traffic doesn't flow through IPS

Unanswered Question
Aug 12th, 2008
User Badges:

Hi

my connectivity is like this

switch-->IPS-->ASA

i have configured the sensing interfaces in IPS to be in promiscous mode, but the traffic is not passing through


if i try to ping from switch to ASA through IPS it doesn't ping


if i bypass the IPS and connect the switch directly to ASA, i can ping ASA


please suggest what could be the issue


iam new to the IPS


Thanks Ravi

  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Loading.
Farrukh Haroon Tue, 08/12/2008 - 07:16
User Badges:
  • Red, 2250 points or more

The topology you describe is for Physical Inline Interface Pair and not for Promiscuous mode.


switch-->IPS-->ASA


Have a look at this:


http://www.cisco.com/en/US/products/hw/vpndevc/ps4077/products_configuration_example09186a00809c37cb.shtml


A Promiscuous mode topology is something like:


IPS<----SPAN/VACL----switch------>ASA


Regards


Farrukh

Actions

This Discussion