HI Experts ,
Can you please give me an idea about what this IPS/IDS module for ASA 5505 is ?
How much does it cost ? How do I install it and configure it to work with ASA 5505 ?
We also have a few site to site VPN setup from ASA 5505 . Would this affect it in someway ?
Many Thanks ,
You should be able to find the links I provided for you with a general search on Cisco's website for "ssc-5" and "installation" and "configure".
No, you would still have the ASA terminate the Internet access. You want to have the SSC-5 (IPS) module monitor the INSIDE interfaces, (you always want to perform IDS/IPS on the inside of a firewall). This way you will see the traffic after it has been decrypted on your VPN and after the traffic has been filtered by your firewall rules.