Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
CSM 4.3 came out without much noise or attention. I spent a lot of time with the demo at CiscoLive and IMO this version is a game changer and can compete with anything out there...why so quiet?
I have two redundant ACE mods, running 3.0(0)A1(6.1). They appear to be corrupting/dropping ping packets, but only to "reals" that live on the ACE. If I ping through the ACE no problem, if I transfer large FTP file to "real" or VIP no problem. Howeve...
The sub-interface needs a vlan id, something like:interface GigabitEthernet0/0.2vlan 2nameif Inside0/0.2security-level 20ip address 192.168.2.1 255.255.255.0 standby 192.168.2.2 !Also on the switch dont forget to create vlan 2, than double check that...
The traffic does not automatically get copied to the IPS, you need to create an access-list and class-map to apply (like QoS)access-list IPS extended permit ip any any!class-map global-ips match access-list IPS!policy-map global_policy class g...
Is the A2 train the current version recommended by Cisco? These devices load balance critical systems so we usually try and stay with Safe Harbor code were ever possible. In my deployment I require stability over features and in the past have stayed ...