Download Print this page

Cisco ASA 5506-X Configuration Manual page 406

Cli
Hide thumbs Also See for ASA 5506-X:

Advertisement

Configuring the ASA IPS module
IPS Default
Gateway
If you do not have an inside router
If you have only one inside network, then you cannot also have a separate management network, which
would require an inside router to route between the networks. In this case, you can manage the ASA from
the inside interface instead of the Management 0/0 interface. Because the IPS module is a separate device
from the ASA, you can configure the IPS Management 1/0 address to be on the same network as the
inside interface.
Management PC
Proxy or DNS Server
(for example)
ASA 5512-X through ASA 5555-X (Software Module)
These models run the IPS module as a software module, and the IPS management interface shares the
Management 0/0 interface with the ASA.
ASA 5545-X
Cisco ASA Series Firewall CLI Configuration Guide
18-8
Proxy or DNS Server (for example)
ASA gateway for Management
Router
Management
ASA Management 0/0
IPS Management 1/0
Management PC
IPS Default Gateway
Layer 2
Switch
IPS Management 1/0
ASA Management 0/0 not used
IPS Management 0/0
Default IP: 192.168.1.2
ASA Management 0/0
Default IP: 192.168.1.1
ASA
Outside
Inside
IPS
ASA
Inside
Outside
Internet
IPS
Chapter 18
ASA IPS Module
Internet

Hide quick links:

Advertisement

loading