Stupid question:
If I have two ASAs, but only one IDS module, can I put the module in the primary ASA, configure it, and in the event of failover go without IDS functionality on the secondary?
Two questions:
1) Is this a Cisco supportable configuration?
2) Will the IDS configuration sync to the secondary and just be silently ignored so that the secondary will still function, or will the IDS configuration fail and break functionality on the secondary because it can't process the IDS configuration.
Thanks!