cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
361
Views
0
Helpful
1
Replies

New AIP-SSM10

jdsalminen
Level 1
Level 1

Does the Gi 0/1 interface on the SSM module have to be connected to the network in order to load IPS software updates on it? I have configured the ASA interfaces already.

1 Accepted Solution

Accepted Solutions

marcabal
Cisco Employee
Cisco Employee

Yes the external interface of the SSM must be connected to a network. All remote management (including downloading/pushing of updates) will be done through the external port.

A word of caution.

Many user have plugged the SSM external management interface and the ASA management interface on to the same network. They are then unable to reach the SSM from a remote site. This is because the ASA management interface is a management only interface for the ASA itself and is not able to route packets to the IP of the management port of the SSM.

To route packets to the SSM the management port of the ASA should be made a standard port (remove the management-only configuration) or move the SSM management port to a different network routed through one of the other ASA interfaces.

View solution in original post

1 Reply 1

marcabal
Cisco Employee
Cisco Employee

Yes the external interface of the SSM must be connected to a network. All remote management (including downloading/pushing of updates) will be done through the external port.

A word of caution.

Many user have plugged the SSM external management interface and the ASA management interface on to the same network. They are then unable to reach the SSM from a remote site. This is because the ASA management interface is a management only interface for the ASA itself and is not able to route packets to the IP of the management port of the SSM.

To route packets to the SSM the management port of the ASA should be made a standard port (remove the management-only configuration) or move the SSM management port to a different network routed through one of the other ASA interfaces.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card