11-26-2008 09:36 AM - edited 03-10-2019 04:23 AM
Hi Guys
I have Active/Stand by ASA Firewalls and I want to place 2 IPS between my 2 6500 Core Switches and ASA Firewalls for the Internet Traffic.
Can anyone propose any solution for a complete failove of IPS.
Regards/Asfar
12-01-2008 08:41 AM
Why not put both IPS inline? --for example-- put the active "inside" and "dmz" interfaces from ASA-ACTIVE through IPS#1 and the same for ASA-Standby - put this one's "inside" and "dmz" through IPS#2. If you put the IPS on the outside interface you risk having no visibility on all encrypted traffic.
12-02-2008 12:21 AM
hi mdreelan ,can you give me a diagram about how to connect?
best regard
12-02-2008 06:32 AM
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide