09-22-2010 08:39 AM - edited 03-09-2019 11:10 PM
Hi,
I want to know if FWSM supports Threat Statistics like Cisco ASA.
My customer wants to monitor top usage and I guess that Firewall Dashboard on ASDM is a simple way to do that.
I did a look into new version 4.1 of software bud did not find support for this.
Any help or suggestion will be appreciated.
Jefferson
09-22-2010 11:20 AM
Hi Jefferson,
The FWSM doesn't support threat-detection like the ASA does. You could setup NetFlow on the switch to monitor the VLANs that are attached to the firewall. This would give you insight into the top talkers.
Hope that helps.
-Mike
09-22-2010 05:06 PM
To add on to what Mike said, the reason we do not do the same kind of threat statistics id two fold: the hardware network processors (NPs) are not design for this and the CPU processor on the module is not terribly fast (doesn't need to be, 99% of traffic handled in HW and not on the CPU). Mike is right, do netflow on the chassis. - Magnus
Posted from my mobile device.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide