07-16-2011 12:21 AM - edited 03-10-2019 05:24 AM
Dear boss
I just start ASA5520, enable all interface and put ip. Now i want to enable IPS, but cant. here is the show module all message.
when it do
ciscoasa(config)# session 1, it ask password and it takes no password, nighter cisco nor my user passwoed.
ciscoasa(config)# show module all
Mod Card Type Model Serial No.
--- -------------------------------------------- ------------------ -----------
0 ASA 5520 Adaptive Security Appliance ASA5520 JMX1235L0PX
1 ASA 5500 Series Security Services Module-20 ASA-SSM-20 JAF1228BPLR
Mod MAC Address Range Hw Version Fw Version Sw Version
--- --------------------------------- ------------ ------------ ---------------
0 0022.5597.0be7 to 0022.5597.0beb 2.0 1.0(11)4 7.0(8)
1 001d.7032.58b7 to 001d.7032.58b7 1.0 1.0(11)4 6.0(4)E1
Mod Status Data Plane Status
--- ------------------ ---------------------
0 Up Sys Not Applicable
1 Up Up
ciscoasa(config)#
what can i do now ?
how i enable IPS in cli mode or GUI mode ?
Please suggest me.
thanking you
shahid
07-16-2011 05:40 AM
You would need to configure the IP Address of the IPS module first via the "setup" command once you session into the IPS.
The management port on the IPS also needs to be connected to your network for you to be able to manage it via GUI (HTTPS).
Here is the configuration guide to setup the IPS module for your reference:
http://www.cisco.com/en/US/docs/security/ips/6.0/configuration/guide/idm/dmIntro.html#wp1051734
Hope this helps.
07-16-2011 10:10 PM
Hi halim
Thank u . I m telling u what i did.
1. Password cisco dont take for session 1. If u have any other default password ?
2. if i write setup, it says no inside interface. can not continue.
3. I got no command for Hw-module modeule 1 password-recovery.
4.I m trying for password recovery software. but not get yet. if u have the software pls send me.
this is my scenario. suggest me pls.
shahid
07-17-2011 02:26 AM
1. Default password is cisco, however if someone has changed that to something else, then you would need to reset the password. For the version of IPS currently installed (6.0.4(E1)), you can't perform password reset from the ASA, so you would need to re-image the IPS, and since you are re-imaging it, you might as well re-image it to the latest version of software, ie: 7.0.5(E4).
2. You can only run "setup" once you are "session" into the IPS module. You can't run "setup" from the ASA prompt.
3. The version of IPS that you are running, does not allow password recovery from the ASA command line. You would need to follow my step 1 above.
4. To download the software, you would need to have CCO ID (cisco.com ID), and your CCO ID needs to be linked to a Smartnet Contract. Otherwise, you can obtain it from the reseller/partner where you purchase the ASA/IPS module from.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide