cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
314
Views
0
Helpful
1
Replies

Divert ASA self originated traffic to SSMs

ROBERTO GIANA
Level 4
Level 4

Does anybody know if it is possible to divert self originated traffic to an AIP-SSM or a CSC-SSM?

I want FTP and HTTP sessions coming out of a WebVPN session and going to an internal server be scanned by a CSC-SSM. As the WebVPN session gets terminated on the ASA, the resulting access to the FTP server is, as far as I know, a self originating session. Can this traffic be diverted to the SSM for scanning?

Does such a scenario work?

1 Accepted Solution

Accepted Solutions

Yudong Wu
Level 7
Level 7
1 Reply 1

Yudong Wu
Level 7
Level 7

based on release notes, it should be supported since 7.2.

http://www.cisco.com/en/US/docs/security/asa/asa72/release/notes/asarn72.html#wp69095

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card