11-18-2008 04:06 AM - edited 02-21-2020 03:06 AM
Hi
I am new to cisco box. i have a ASA 5510 with ssm module. i would like to insert this device between the users lan and the server farm. the intension is to block the non legitimate traffic. and need to use the IPS module to detect possible attacks from the users side.
Kindly
guide me through the steps to do the basic configurations for enabling the ssm and the other communication.
Many thanks and regards,
Rajeev
11-25-2008 02:01 PM
The CSC SSM maintains a file containing signature profiles of suspicious content, updated regularly from an update server at Trend Micro. The CSC SSM scans traffic it receives from the adaptive security appliance and compares it to the content profiles it obtains from Trend Micro. It then forwards legitimate content on to the adaptive security appliance for routing, or blocks and reports content that is suspicious.
http://www.cisco.com/en/US/docs/security/ips/6.1/configuration/guide/cli/cli_ssm.html
11-25-2008 09:43 PM
Hello Rajeev
Please have a look at this:
http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a00808dea62.shtml
Please rate if helpful.
Regards
Farrukh
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide