Hi,
We are trying to put Intrusion Detection system (IDS) between BGP speaking devices...we came up with an idea but not really sure if this will work.
We have three routers connected to layer3 switch via fiber. These devices are fully meshed and runing BGP as daigram below,
Rt1-------Rt2-------Rt3
- - -
- - -
- - -
Layer3 switch
-
-
Internal Network
Now, we are trying to put IDS between routers and layer3 switch by adding cisco 3550 as diagram below,
Rt1-------Rt2-------Rt3
- - -
- - -
- - -
Cisco3550-12g
-
-
IDS
-
-
Layer3 switch
-
-
Internal Network
This may work if we make cisco 3550 as passive switch, but I'm trying to get some second opinion, advise or suggestions....
Thank you