cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
407
Views
3
Helpful
1
Replies

Can FTD route mode to add additional interface for passive interface?

gwang
Level 1
Level 1

Hello expert,

Our FTD is running route mode with IPS rule for inline drop. Can we setup an additional interface to connect switch on SPAN port?

One word, Can Single FTD to be both IPS and IDS? If YES, the new interface should be passive mode with passive Zone. How to configure

Access control policy rules for IDS? Our default rule is blocking any any.

Thanks,

1 Reply 1

Nikolaj Pabst
Level 5
Level 5

HI Grace,

You can do this with an interface in Passive TAP mode, if its more interfaces create a Inlineset for this :-)

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card