cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
629
Views
0
Helpful
1
Replies

Testing a ASA - SSM-10

markkingery
Level 1
Level 1

I have a ASA 5520 that I have configured with an ASA -SSM10 card, I have it setup to scan traffic in my lab, is there any site I can use to test that the IPS is actually working?

1 Reply 1

rhermes
Level 7
Level 7

There are a lot of ways you can test that your IPS is working. The easiest is to turn on sig 2004 (ICMP Echo Reply) and run a few pings through your ASA.

If you leave it connected to the open internet (outside your firewall or NAT) you'll see lots of garbage internet attacks showing up as events.

If you want to generate some attacks download a copy of Backtrack 4, it's a live DVD of attack tools.

You can also create a custom sig with a known test string in it. then telnet through your ASA and type the string.

- Bob

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card