?
Solved

redundant ASA or PIX configuration

Posted on 2013-06-04
4
Medium Priority
?
493 Views
Last Modified: 2013-11-29
For years I have used Sonicwall and set it up for redundant / failover.  I just set up a heartbeat cable between the two identical model Sonicwall devices, and if one dies, the other comes online with the exact same LAN and Inet IP addresses.

Is there a very, very simple document or tutorial to walk me through doing this exact same thing with two PIX or two ASA devices?

Oh, one other sidebar question.  do ASA devices also act as Intrusion Detection devices?  Or is that a different Cisco product?

thank  you,
Jeff
0
Comment
Question by:jgrammer42
  • 2
  • 2
4 Comments
 
LVL 28

Expert Comment

by:asavener
ID: 39219176
Active/Standby configuration:  http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_configuration_example09186a00807dac5f.shtml

There is basic IPS built into the ASA product.  There is a more full-featured IPS module that you can install and configure as well.
0
 

Author Comment

by:jgrammer42
ID: 39219201
asavener,
Yes, I have seen that link.  I was looking for something a little more "step by step".  but if that is all there is, I guess I can go with that.

What "basic IPS" functions are in the ASA.   And what more full-featured functions are added by that module?  (I am assuming this is a hardware add in module, correct?)

thank you,
Jeff
0
 
LVL 28

Accepted Solution

by:
asavener earned 2000 total points
ID: 39219456
See these pages for info on what the ASA can do out of the box:

http://www.cisco.com/en/US/docs/security/asa/asa72/configuration/guide/protect.html

http://www.cisco.com/en/US/docs/security/asa/asa72/configuration/guide/inspect.html


The IPS module is a hardware add on.  It has the ability to perform advanced IPS functions, download updated patters/definitions, learn normal traffic patterns and alert when anomalies are detected, etc.

IPS module quick guide:  http://www.cisco.com/en/US/docs/security/asa/quick_start/ips/ips_qsg.html

IPS module overview:  http://www.cisco.com/en/US/prod/collateral/routers/ps5853/ps5875/prod_presentation0900aecd806ccf26.pdf
0
 

Author Closing Comment

by:jgrammer42
ID: 39219503
Thank you very much!
0

Featured Post

Worried about phishing attacks?

90% of attacks start with a phish. It’s critical that IT admins and MSSPs have the right security in place to protect their end users from these phishing attacks. Check out our latest feature brief for tips and tricks to keep your employees off a hackers line!

Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.

Join & Write a Comment

The onset of year 2018 has been a usual business for IT teams still struggling to find their way out in terms of strengthening their cloud security.
Cloud computing is a model of provisioning IT services. By combining many servers into one large pool and providing virtual machines from that resource pool, it provides IT services that let customers acquire resources at any time and get rid of the…
The Email Laundry PDF encryption service allows companies to send confidential encrypted  emails to anybody. The PDF document can also contain attachments that are embedded in the encrypted PDF. The password is randomly generated by The Email Laundr…
Michael from AdRem Software explains how to view the most utilized and worst performing nodes in your network, by accessing the Top Charts view in NetCrunch network monitor (https://www.adremsoft.com/). Top Charts is a view in which you can set seve…

589 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question