cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1345
Views
5
Helpful
3
Replies

How to enable IPS

shahid_duet
Level 1
Level 1

Dear boss

I just start ASA5520, enable all interface and put ip. Now i want to enable IPS, but cant. here is the show module all message.

when it do 

ciscoasa(config)#  session 1, it ask password and it takes no password, nighter cisco nor my user passwoed.

ciscoasa(config)# show module all

Mod Card Type                                    Model              Serial No.

--- -------------------------------------------- ------------------ -----------

  0 ASA 5520 Adaptive Security Appliance         ASA5520            JMX1235L0PX

  1 ASA 5500 Series Security Services Module-20  ASA-SSM-20         JAF1228BPLR

Mod MAC Address Range                 Hw Version   Fw Version   Sw Version

--- --------------------------------- ------------ ------------ ---------------

  0 0022.5597.0be7 to 0022.5597.0beb  2.0          1.0(11)4     7.0(8)

  1 001d.7032.58b7 to 001d.7032.58b7  1.0          1.0(11)4     6.0(4)E1

Mod Status             Data Plane Status

--- ------------------ ---------------------

  0 Up Sys             Not Applicable

  1 Up                 Up

ciscoasa(config)#

whe i click at IPS in GUI mode it appear Following

ask-ip.bmp

whe i keep IP as default or select other IP( managemnet port IP), in both  case it show the message as

MSG.bmp

what can i do now ?

how i enable IPS in cli mode or GUI mode ?

Please suggest me.

thanking you

shahid

3 Replies 3

Jennifer Halim
Cisco Employee
Cisco Employee

You would need to configure the IP Address of the IPS module first via the "setup" command once you session into the IPS.

The management port on the IPS also needs to be connected to your network for you to be able to manage it via GUI (HTTPS).

Here is the configuration guide to setup the IPS module for your reference:

http://www.cisco.com/en/US/docs/security/ips/6.0/configuration/guide/idm/dmIntro.html#wp1051734

Hope this helps.

Hi halim

Thank u . I m telling u what i did.

1. Password cisco dont take for session 1. If u have any other default password  ?

2. if i write setup, it says no inside interface. can not continue.

3. I got no command for Hw-module modeule 1 password-recovery.

4.I m trying for password recovery software. but not get yet. if u have the software pls send me.

this is my scenario. suggest me pls.

shahid

1. Default password is cisco, however if someone has changed that to something else, then you would need to reset the password. For the version of IPS currently installed (6.0.4(E1)), you can't perform password reset from the ASA, so you would need to re-image the IPS, and since you are re-imaging it, you might as well re-image it to the latest version of software, ie: 7.0.5(E4).

2. You can only run "setup" once you are "session" into the IPS module. You can't run "setup" from the ASA prompt.

3. The version of IPS that you are running, does not allow password recovery from the ASA command line. You would need to follow my step 1 above.

4. To download the software, you would need to have CCO ID (cisco.com ID), and your CCO ID needs to be linked to a Smartnet Contract. Otherwise, you can obtain it from the reseller/partner where you purchase the ASA/IPS module from.

Review Cisco Networking for a $25 gift card