- Community Home
- >
- Networking
- >
- Switching and Routing
- >
- Comware Based
- >
- IPS inline with switch 5500G
Categories
Company
Local Language
Forums
Discussions
Forums
- Data Protection and Retention
- Entry Storage Systems
- Legacy
- Midrange and Enterprise Storage
- Storage Networking
- HPE Nimble Storage
Discussions
Forums
Discussions
Discussions
Discussions
Forums
Discussions
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
- BladeSystem Infrastructure and Application Solutions
- Appliance Servers
- Alpha Servers
- BackOffice Products
- Internet Products
- HPE 9000 and HPE e3000 Servers
- Networking
- Netservers
- Secure OS Software for Linux
- Server Management (Insight Manager 7)
- Windows Server 2003
- Operating System - Tru64 Unix
- ProLiant Deployment and Provisioning
- Linux-Based Community / Regional
- Microsoft System Center Integration
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Community
Resources
Forums
Blogs
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Printer Friendly Page
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-09-2009 04:00 AM
11-09-2009 04:00 AM
IPS inline with switch 5500G
Hi all ..
I have one IPS tipping point and a switch 5500G.
I have vlan already in the switch. How do I configure the switch so traffic to my vlan will be filterd by IPS that's connected to the same switch ?
- paxvor -
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-09-2009 06:01 AM
11-09-2009 06:01 AM
Re: IPS inline with switch 5500G
I suppose that you already have security zones configured in the IPS, so you need to connect the IPS to the switch in a port that belongs to the same VLAN as the security zone defined in the IPS port which is connected to the switch. The IPS will filter just the traffic that is routed among different network segments; the local traffic (same network segment) is not filtered by the IPS.
HTH
Fred Mancen
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-09-2009 11:11 PM
11-09-2009 11:11 PM
Re: IPS inline with switch 5500G
i have security zone in IPS already, which is default any to any. I try to use the IPS between PC, success.
so now i have vlan 2 in my switch. I want to have IPS to filter traffic from other vlan and other subnet to vlan2. so i put the port A of IPS to port vlan2 in switch. to which port and which vlan must i put the port B of IPS ?
- paxvor -
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-10-2009 07:17 AM
11-10-2009 07:17 AM
Re: IPS inline with switch 5500G
So, you must create another security zone associated to another segment you want to filter and then connect the IPS to a port with this segment assigned to it. But remember that this is a scenario specifical to this topology you've mentioned; an IPS just filter the traffic that pass through the common security zones. Usually the traffic in the LAN is filtered by another devices positioned among each layer on your network (between distribution and core, for example).
HTH.
Fred Mancen
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-10-2009 10:24 PM
11-10-2009 10:24 PM
Re: IPS inline with switch 5500G
Do I need to add some more configuration to the swith? e.g to tell traffic which destination to vlan 2, will be directed via port connected to IPS.
- paxvor -
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-12-2009 06:01 AM
11-12-2009 06:01 AM
Re: IPS inline with switch 5500G
What is the IPS device you are using? I will try to find something the configuration guide in order to help you.
Regards
Fred Mancen
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-12-2009 08:59 PM
11-12-2009 08:59 PM
Re: IPS inline with switch 5500G
I really appreciate for staying with me.
My IPS is Tipping Point 100 E, my switch is 3com 5500G-EI.
Now I setup any - any in virtual port just to be sure.
- paxvor -
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-13-2009 06:29 AM
11-13-2009 06:29 AM
Re: IPS inline with switch 5500G
http://rapidshare.com/files/306405427/techd82-lsmusersguide_v251.pdf.html
Go to page 28, Security Profiles. I think it helps you to solve your problem. This version is not up-to-date, but it can helps. I don't have too much experience with IPS, just something with X-506...I'm learning with you.
Regars.
Fred Mancen
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-16-2009 09:47 PM
11-16-2009 09:47 PM
Re: IPS inline with switch 5500G
I guess its tweaking time again .. :)
I'll let you know if I have a progress
- paxvor -