Is span monitoring on Cisco ASA 5520 possible?
Posted
by Brent
on Server Fault
See other posts from Server Fault
or by Brent
Published on 2010-04-28T20:19:34Z
Indexed on
2010/04/28
20:27 UTC
Read the original article
Hit count: 382
From what I have read, you can use the switchport monitor command on ASA 5505's to setup a Span port due to the back of the ASA actually being a switch.
On my 5520, I do not see the switchport command listed when issuing a ? via the CLI. How do people monitor traffic on non-5505's? My goal is to connect our IDS/IPS device that is running is promiscuous mode to a Ethernet port on the 5520 to monitor WAN traffic. I do not want to have to pass the WAN traffic through a switch as it would require me to get two (for redundancy) STP/switchport capable switches.
Guide to setting up switchport access on a 5505: http://www.wr-mem.com/?p=66
© Server Fault or respective owner