Introducing The Ips 4270-20 - Cisco IPS-4255-K9 - Intrusion Protection Sys 4255 Installation Manual

Intrusion prevention system appliance and module installation guide for ips 7.0
Table of Contents

Advertisement

Introducing the IPS 4270-20

Introducing the IPS 4270-20
Caution
The BIOS on the IPS 4270-20 is specific to the IPS 4270-20 and must only be upgraded under
instructions from Cisco with BIOS files obtained from the Cisco website. Installing a non-Cisco or
third-party BIOS on the IPS 4270-20 voids the warranty.
The IPS 4270-20 delivers up to 4 Gbps of performance in media-rich environments and 2 Gbps in
transactional environments enabling you to protect fully saturated Gigabit networks and aggregate
network traffic on multiple sensing interfaces. The IPS 4270-20 is also inline ready and has support for
both copper and fiber NICs thus providing flexibility of deployment in any environment.
Media-rich environments are characterized by content, such as that seen on popular websites with video
and file transfer. Transactional environments are characterized by connections, such as E-commerce,
instant messaging, and voice.
environments.
Figure 4-1
Media-rich and Transactional Environments
Instant
Messaging
TRANSACTIONAL
The IPS 4270-20 has two built-in GigabitEthernet network ports and nine expansion slots. The network
port numbers are numbered from top to bottom beginning with 0 and the expansion slot numbers increase
from right to left. The two built-in GigabitEthernet ports are used for management and are called
Management0/0 and Management0/1. Management0/1 is reserved for future use. Slots 1 and 2 are
reserved for future use. You can populate slots 3 through 8 with supported network interface cards. Slot
9 is populated by a RAID controller card and is not available for use by network interface cards. The
sensing interfaces are called GigabitEthernet.
Because of the multiple interfaces on the IPS 4270-20, it can cover multiple subnets, each of which have
bandwidth requirements in the multi-T3 range or Gigabit range, and the multiple interfaces can be
connected directly to the additional monitoring interfaces without needing to SPAN the traffic through
a switch.
For improved reliability, the IPS 4270-20 uses a compact flash device for storage rather than a hard-disk
drive. The IPS 4270-20 supports two optional network interface cards, the 2SX interface card with
fiber-optic ports, and the 4GE bypass interface card with copper ports that contains the hardware-bypass
feature. Initially the IPS 4270-20 supports only the built-in interfaces and these two interface cards.
The IPS 4270-20 supports a maximum of 16 sensing ports. Any additional configured ports will not be
monitored and will not appear in the IPS configuration or statistics and no inline traffic will be forwarded
on or between these ports. You receive the following error if you exceed the number of supported ports:
The number of installed network interfaces exceeds the limit of 16. The excess interfaces
are ignored.
Cisco Intrusion Prevention System Appliance and Module Installation Guide for IPS 7.0
4-2
Figure 4-1
Commerce
Gaming
Collaborative
Voice
Workspaces
demonstrates the spectrum of media-rich and transactional
Streaming
WWW
Video
Data
Replication
Chapter 4
Installing the IPS 4270-20
Web 2.0
MEDIA-RICH
OL-18504-01

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents