Solved

redundant ASA or PIX configuration

Posted on 2013-06-04
4
466 Views
Last Modified: 2013-11-29
For years I have used Sonicwall and set it up for redundant / failover.  I just set up a heartbeat cable between the two identical model Sonicwall devices, and if one dies, the other comes online with the exact same LAN and Inet IP addresses.

Is there a very, very simple document or tutorial to walk me through doing this exact same thing with two PIX or two ASA devices?

Oh, one other sidebar question.  do ASA devices also act as Intrusion Detection devices?  Or is that a different Cisco product?

thank  you,
Jeff
0
Comment
Question by:jgrammer42
  • 2
  • 2
4 Comments
 
LVL 28

Expert Comment

by:asavener
ID: 39219176
Active/Standby configuration:  http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_configuration_example09186a00807dac5f.shtml

There is basic IPS built into the ASA product.  There is a more full-featured IPS module that you can install and configure as well.
0
 

Author Comment

by:jgrammer42
ID: 39219201
asavener,
Yes, I have seen that link.  I was looking for something a little more "step by step".  but if that is all there is, I guess I can go with that.

What "basic IPS" functions are in the ASA.   And what more full-featured functions are added by that module?  (I am assuming this is a hardware add in module, correct?)

thank you,
Jeff
0
 
LVL 28

Accepted Solution

by:
asavener earned 500 total points
ID: 39219456
See these pages for info on what the ASA can do out of the box:

http://www.cisco.com/en/US/docs/security/asa/asa72/configuration/guide/protect.html

http://www.cisco.com/en/US/docs/security/asa/asa72/configuration/guide/inspect.html


The IPS module is a hardware add on.  It has the ability to perform advanced IPS functions, download updated patters/definitions, learn normal traffic patterns and alert when anomalies are detected, etc.

IPS module quick guide:  http://www.cisco.com/en/US/docs/security/asa/quick_start/ips/ips_qsg.html

IPS module overview:  http://www.cisco.com/en/US/prod/collateral/routers/ps5853/ps5875/prod_presentation0900aecd806ccf26.pdf
0
 

Author Closing Comment

by:jgrammer42
ID: 39219503
Thank you very much!
0

Featured Post

DevOps Toolchain Recommendations

Read this Gartner Research Note and discover how your IT organization can automate and optimize DevOps processes using a toolchain architecture.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Enterprise Password Manager Suites as well as Local Password managers are covered in this article.
Knowing where your website is hosted is as important as the features you receive, the monthly fee, and the support you receive. Due diligence should be done when choosing your next hosting provider.
Nobody understands Phishing better than an anti-spam company. That’s why we are providing Phishing Awareness Training to our customers. According to a report by Verizon, only 3% of targeted users report malicious emails to management. With compan…
With Secure Portal Encryption, the recipient is sent a link to their email address directing them to the email laundry delivery page. From there, the recipient will be required to enter a user name and password to enter the page. Once the recipient …

832 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question