cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
3397
Views
0
Helpful
1
Replies

firepower ids and IPS

Mary
Level 1
Level 1

is the ids and ips different module in firepower, i was told that if IPS run in read-only mode, it is ids, is it true. I try to search ids troubleshooting in firepower in internet, but there is no troubleshooting guide for ids and ips, anyone have found the link of cisco documentation regarding ids and ips troubleshooting guide? thanks

1 Reply 1

Marvin Rhoads
Hall of Fame
Hall of Fame

If the Firepower sensor is inline with a policy that has rules with a BLOCK or DROP action then it can be said to be in IPS mode. 

 

Similarly if it does not have the ability to block or drop traffic (either by architectural placement or by policy configuration) then it would be considered as being in IDS mode. 

Review Cisco Networking for a $25 gift card