07-30-2008 08:03 AM - edited 03-10-2019 04:13 AM
Can anyone give 2-3 good reasons for doing url filtering using the CSC instead of MPF? Is there a limit on the number of entries in the list? How about other resource or process hits to the ASA?
07-31-2008 07:39 AM
mfalcon -
This forum might not be the best place to ask a URL filtering questions. The IDS/IPS aspects of the ASA are usualy as deep as the discussions go into the ASA chassis here. You might try asking in the Firewall forum.
07-31-2008 06:10 PM
Here are some reasons:
1) The ASA can only have 4GE interface card, AIP -SSM (IPS) or the CSC at once. If you need the other two the only remaining choice is MPF or external server
2) Cost! The CSC costs money, and maybe a particular customer requires just to block a handful of websites, the CSC would be over-kill there.
Regards :)
Farrukh
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide