03-13-2011 03:25 AM - edited 03-10-2019 05:18 AM
Hello,
had anybody experience with "Cisco Anomaly Guard Module" WS-SVC-AGM-1-K9 for Catalyst 6500?
We're looking for some IDS/IPS prevention system which could take 2-3 Gbits of traffic. From the documentation it looks not bad, and we can get them as used parts (6500 + Sup720 + AGM +ADM) quite cheap. The second solution is Arbor with cisco12000 as boader router (10Gbit uplink) is much more expencevie.
Arbor tries of cause sell us their solution as "Cisco Anomaly Guard Module" is ot of sale and doesn't have any new features, but from the Data sheets Cisco AGM is eactly what we need.
Or may be is there another solution which could be comparable to those two?
Thank you.
03-17-2011 07:06 AM
Hi,
I'd like to clarify that IPS/IDS solution is different from Anomaly guard. You'd want a IDSM2 if looking for IPS/IDS functionality. This is also a module that can fit into a 6500.
AGM/ADM is primarily for mitigating DDoS.
Paps
03-17-2011 08:56 AM
Hello padatta,
AGM/ADM are IDS/IPS systems, one can of couse discuss about the terms, but it won't be productive :).
IDSM2 has not enough performance and it should sit inline, ADM/AGM can change he next hop for the diverted traffic and be out of traffic path during the normal operation.
Konstantin
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide