ASA 5505 Monitor Ports - For IDS/IPS/Snort etc
Posted by: Rich in Config. Guides, Tricks and TipsThis is quite an interesting feature, and one that you wouldnt usually expect on a device like this.
Basically, when running IDS/IPS/Snort or any other packet sniffer in promiscuous mode, you need a way to “mirror” traffic from your hosts, to your IDS box. With Cisco switches, this is achieved through the use of the “monitor” commands, which set up Cisco SPAN ports (Switch Port Analyzer).

Entries (RSS)