Hi all, we are finally getting around to replacing our old pair of PIX 525s with the new ASA 5520s. The firewall side of the house I have down, but we decided to go ahead and purchase the SSM module as well to provide some basic IPS services, which we didn't have before. I've found some documentation to get me started on the IPS configuration that I think should carry me through here:
What I'm really not clear on; however, is that this SSM module has a gigabit (or maybe FE) ethernet port on it. I'm not sure what this port is intended for and so I don't know what network segment to put it on. Is it just for management? Is it used to actually direct traffic to it for IPS inspection? I haven't been able to find out anything about it at all. Ultimately I'd like to create 3 sensors to watch traffic hitting our LAN, DMZ, and Outside interfaces.
Can someone tell me what the deal with that ethernet interface is and where it should logically exist on my network?
Thanks ahead of time.
What I'm really not clear on; however, is that this SSM module has a gigabit (or maybe FE) ethernet port on it. I'm not sure what this port is intended for and so I don't know what network segment to put it on. Is it just for management? Is it used to actually direct traffic to it for IPS inspection? I haven't been able to find out anything about it at all. Ultimately I'd like to create 3 sensors to watch traffic hitting our LAN, DMZ, and Outside interfaces.
Can someone tell me what the deal with that ethernet interface is and where it should logically exist on my network?
Thanks ahead of time.