cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
565
Views
0
Helpful
2
Replies

Just brought a SSM online

HMidkiff
Level 1
Level 1

I just brought an SSM online.  I think it is working but when I go in the module and do a show statistics I really don't see anything?  Am I looking in the wrong place?  Can you see a better representation of what is going on from the ASDM?

Harrison

2 Replies 2

praprama
Cisco Employee
Cisco Employee

Hi,

On the ASA, please do a "show service-policy" to see if packets are being re-directed to the SSM module. On the sensor, you can look at the output of "show statictics virtual-sensor" to see how if packets are being processes by the module.

Hope this helps!!

Thanks and Regards,

Prapanch

Panos Kampanakis
Cisco Employee
Cisco Employee

You can also run a packet tracer for an imaginary packet and see if it is going to hit your SSM module.

To divert traffic from the ASA ro the module you will need something like

access-list ssm-acl extended permit 

class-map csc-class
match access-list ssm-acl

policy-map global_policy
class ssm-class
  csc fail-open

I hope it helps.

PK

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card