Default settings, Configuring the asa ips module – Cisco ASA 5505 User Manual

Page 1226

Advertising
background image

58-6

Cisco ASA 5500 Series Configuration Guide using the CLI

Chapter 58 Configuring the ASA IPS Module

Default Settings

Firewall Mode Guidelines

Supported in routed and transparent firewall mode.

Model Guidelines

See the Cisco ASA Compatibility Matrix for information about which models support which
modules:

http://www.cisco.com/en/US/docs/security/asa/compatibility/asamatrx.html

The ASA 5505 does not support multiple context mode, so multiple context features, such as virtual
sensors, are not supported on the AIP SSC.

The ASA IPS module for the ASA 5510 and higher supports higher performance requirements,
while the ASA IPS module for the ASA 5505 is designed for a small office installation. The
following features are not supported for the ASA 5505:

Virtual sensors

Anomaly detection

Unretirement of default retired signatures

Additional Guidelines

You cannot change the software type installed on the module; if you purchase an ASA IPS module, you
cannot later install other software on it.

Default Settings

Table 58-1

lists the default settings for the ASA IPS module.

Note

The default management IP address on the ASA is 192.168.1.1/24.

Configuring the ASA IPS module

This section describes how to configure the ASA IPS module and includes the following topics:

Task Flow for the ASA IPS Module, page 58-7

Connecting Management Interface Cables, page 58-7

Table 58-1

Default Network Parameters

Parameters

Default

Management VLAN (ASA 5505 only)

VLAN 1

Management IP address

192.168.1.2/24

Management hosts (ASA 5505 only)

192.168.1.5 through 192.168.1.254

Gateway

192.168.1.1/24 (the default ASA management IP address)

Username

cisco

Password

cisco

Advertising