cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1378
Views
10
Helpful
1
Replies

FTD - Deployment Modes and Interface Modes

muthumohan
Level 1
Level 1

Hi All,

 

The more I read about this topic, the more I get confused.

I am pretty clear on the deployment modes, routed and transparent modes and how they work.

Again, I clearly know how the interface modes work.

The source of confusion is the combination of two, deployment modes and interface modes.

For example, how will FTD work in inline-set interface mode in the routed mode? In inline-set, the incoming and outgoing interfaces are fixed, that means no 'routing' takes place. Also, in inline-set, no IP address is configured on the interfaces.

 

Another source of confusion is "IPS-Only" mode? What is this mode on FTD? Does this mode only working on 'Intrusion Policy' bypassing all other policies like ACP, File Policy etc.? For me, Inline-set, inline-tap and passive interface modes are better used in "IPS-Only" mode rather than in routed or transparent mode.

 

Any clarification on this would be greatly appreciated.

Thanks,

Mohan

 

1 Accepted Solution

Accepted Solutions

muthumohan
Level 1
Level 1

In other words, does ACP (URL Filtering, Application filtering etc.) and File Policy work in inline-set, inline-Tap and passive interface modes? Or, only Intrusion policy (IPS-Only) works in this mode?

View solution in original post

1 Reply 1

muthumohan
Level 1
Level 1

In other words, does ACP (URL Filtering, Application filtering etc.) and File Policy work in inline-set, inline-Tap and passive interface modes? Or, only Intrusion policy (IPS-Only) works in this mode?

Review Cisco Networking for a $25 gift card