cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1615
Views
0
Helpful
2
Replies

Firepower ips best practices

We want to configure firepower ips with FSM in production environment.

what are the precaution taken while using this product in live environment??

Do we need to configure ASA- Firepower ips in monitor mode? if yes, then how we can configure it??

Whats is cisco recommended ips policies over exiting default policies ie "balanced connectivity over security/connectivity over security etc ??"

2 Replies 2

Aastha Bhardwaj
Cisco Employee
Cisco Employee

Hi,

If you put that in monitor only mode then no action will be taken on the packets.

Just to be sure as it is the first deployment you can initially place it in monitor-only mode and then change it to inline mode later.

The below links define how can you to do the setup:

Refer link : http://www.cisco.com/c/en/us/td/docs/security/asa/quick_start/sfr/firepower-qsg.html

http://www.cisco.com/c/en/us/support/docs/security/asa-firepower-services/118644-configure-firepower-00.html

Regards,

Aastha Bhardwaj

Rate if that helps!!!

I would really like some guidance in regards to this question.

Whats is cisco recommended ips policies over exiting default policies ie "balanced connectivity over security/connectivity over security etc ??"

Review Cisco Networking for a $25 gift card