RE: IPS In-line

From: Christopher M. Heffner (cheffner@certified-labs.com)
Date: Tue Dec 05 2006 - 15:34:54 ART


Two interfaces meaning "Monitoring Interfaces" to do inline with 5.0
code release.

VLAN pairs to do inline on a single monitoring interface was introduced
in the 5.1 code release.

Christopher M. Heffner, CCIE 8211, CCSI 98760

Strategic Network Solutions, Inc.

________________________________

From: tdt_cciesec [mailto:tdt_cciesec@yahoo.com]
Sent: Tuesday, December 05, 2006 1:10 PM
To: Christopher M. Heffner; Jerry McVoy; security@groupstudy.com;
ccielab@groupstudy.com
Subject: RE: IPS In-line

What do you mean by 5.0 requires two interfaces to do inline?

If that is true, then the IDS 4210 should be able to do "inline" right
because the IDS 4210

has two interface but it can NOT. Only 4215 or higher can do in-line
(that's what I've been

told at Cisco networkers ask the engineer booth). You need at least one
interface for

management while the other two interfaces for inline. Cisco 4210 can
only IDS 5.x but only

in passive mode and not in-line.

"Christopher M. Heffner" <cheffner@certified-labs.com> wrote:

        IPS 5.0 requires two interfaces to do inline using "interface
pairs".

        IPS 5.1 and higher you can use one interface and uses "VLAN
pairs".

        HTH.

        Christopher M. Heffner, CCIE 8211, CCSI 98760
        Strategic Network Solutions, Inc.

        -----Original Message-----
        From: nobody@groupstudy.com [mailto:nobody@groupstudy.com] On
Behalf Of
        Jerry McVoy
        Sent: Tuesday, December 05, 2006 12:10 AM
        To: security@groupstudy.com; ccielab@groupstudy.com
        Subject: IPS In-line

        How many interfaces do you need on an IPS sensor to do in-line
mode?



This archive was generated by hypermail 2.1.4 : Tue Jan 02 2007 - 07:50:36 ART