09-22-2010 08:39 AM - edited 03-09-2019 11:10 PM
Hi,
I want to know if FWSM supports Threat Statistics like Cisco ASA.
My customer wants to monitor top usage and I guess that Firewall Dashboard on ASDM is a simple way to do that.
I did a look into new version 4.1 of software bud did not find support for this.
Any help or suggestion will be appreciated.
Jefferson
09-22-2010 11:20 AM
Hi Jefferson,
The FWSM doesn't support threat-detection like the ASA does. You could setup NetFlow on the switch to monitor the VLANs that are attached to the firewall. This would give you insight into the top talkers.
Hope that helps.
-Mike
09-22-2010 05:06 PM
To add on to what Mike said, the reason we do not do the same kind of threat statistics id two fold: the hardware network processors (NPs) are not design for this and the CPU processor on the module is not terribly fast (doesn't need to be, 99% of traffic handled in HW and not on the CPU). Mike is right, do netflow on the chassis. - Magnus
Posted from my mobile device.
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: