58-6
Cisco ASA 5500 Series Configuration Guide using the CLI
Chapter 58 Configuring the ASA IPS Module
Default Settings
Firewall Mode Guidelines
Supported in routed and transparent firewall mode.
Model Guidelines
• See the Cisco ASA Compatibility Matrix for information about which models support which
modules:
http://www.cisco.com/en/US/docs/security/asa/compatibility/asamatrx.html
• The ASA 5505 does not support multiple context mode, so multiple context features, such as virtual
sensors, are not supported on the AIP SSC.
• The ASA IPS module for the ASA 5510 and higher supports higher performance requirements,
while the ASA IPS module for the ASA 5505 is designed for a small office installation. The
following features are not supported for the ASA 5505:
–
Virtual sensors
–
Anomaly detection
–
Unretirement of default retired signatures
Additional Guidelines
You cannot change the software type installed on the module; if you purchase an ASA IPS module, you
cannot later install other software on it.
Default Settings
Table 58-1 lists the default settings for the ASA IPS module.
Note The default management IP address on the ASA is 192.168.1.1/24.
Configuring the ASA IPS module
This section describes how to configure the ASA IPS module and includes the following topics:
• Task Flow for the ASA IPS Module, page 58-7
• Connecting Management Interface Cables, page 58-7
Table 58-1 Default Network Parameters
Parameters Default
Management VLAN (ASA 5505 only) VLAN 1
Management IP address 192.168.1.2/24
Management hosts (ASA 5505 only) 192.168.1.5 through 192.168.1.254
Gateway 192.168.1.1/24 (the default ASA management IP address)
Username cisco
Password cisco