Download Print this page

Cisco ASA 5506-X Configuration Manual page 402

Cli
Hide thumbs Also See for ASA 5506-X:

Advertisement

Information About the ASA IPS Module
Figure 18-3
Figure 18-4
traffic flow goes to a different sensor.
Figure 18-4
Information About Management Access
You can manage the IPS application using the following methods:
See the following information about the management interface:
Cisco ASA Series Firewall CLI Configuration Guide
18-4
Security Contexts and Virtual Sensors
Main System
Context
1
Context
Sensor
1
IPS
shows a single mode ASA paired with multiple virtual sensors (in inline mode); each defined
Single Mode ASA with Multiple Virtual Sensors
Main System
Sensor
1
IPS
Sessioning to the module from the ASA—If you have CLI access to the ASA, then you can session
to the module and access the module CLI. See
Connecting to the IPS management interface using ASDM or SSH—After you launch ASDM from
the ASA, your management station connects to the module management interface to configure the
IPS application. For SSH, you can access the module CLI directly on the module management
interface. (Telnet access requires additional configuration in the module application). The module
management interface can also be used for sending syslog messages or allowing updates for the
module application, such as signature database updates.
ASA 5585-X—The IPS management interface is a separate external Gigabit Ethernet interface.
ASA
2
Context
3
Sensor
2
ASA
Traffic 1
Traffic 2
Traffic 3
Sensor
Sensor
2
3
Sessioning to the Module from the ASA, page
Chapter 18
ASA IPS Module
18-10.

Hide quick links:

Advertisement

loading