Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
I believe I can clarify your second point. I, too, am wondering about the first question (Why would you need to apply the IPS ACL to an interface?).Regarding the global policy: The policy that is applied globally to all interfaces (in this case, "gl...
Step 4 in the ASA config link you provided is perplexing me. The access-list "IPS" says to permit ip any any. Step 4 applies this ACL direclty to an interface with an access-group command. Wouldn't that permit all traffic, opening the ASA up wide?...