Cisco Systems and the ASA Services Module Manual De Usuario

Descargar
Página de 712
 
31-7
Cisco ASA Series Firewall CLI Configuration Guide
 
Chapter 31      Configuring the ASA IPS Module
  Configuring the ASA IPS module
Configuring the ASA IPS module
This section describes how to configure the ASA IPS module and includes the following topics:
Task Flow for the ASA IPS Module
Configuring the ASA IPS module is a process that includes configuration of the IPS security policy on 
the ASA IPS module and then configuration of the ASA to send traffic to the ASA IPS module. To 
configure the ASA IPS module, perform the following steps:
Step 1
Cable the ASA IPS management interface. See the 
Step 2
Session to the module. Access the IPS CLI over the backplane.See the 
.
Step 3
(ASA 5512-X through ASA 5555-X; may be required) Install the software module. See the 
Step 4
Depending on your ASA model:
(ASA 5510 and higher) Configure basic network settings for the IPS module. See the 
.
(ASA 5505) Configure the management VLAN and IP address for the IPS module. See the 
.
Step 5
On the module, configure the inspection and protection policy, which determines how to inspect traffic 
and what to do when an intrusion is detected. See th
Step 6
(ASA 5510 and higher, optional) On the ASA in multiple context mode, specify which IPS virtual 
sensors are available for each context (if you configured virtual sensors). See the 
.
Step 7
On the ASA, identify traffic to divert to the ASA IPS module. See the 
.