Is span monitoring on Cisco ASA 5520 possible?

Posted by Brent on Server Fault See other posts from Server Fault or by Brent
Published on 2010-04-28T20:19:34Z Indexed on 2010/04/28 20:27 UTC
Read the original article Hit count: 361

Filed under:
|
|

From what I have read, you can use the switchport monitor command on ASA 5505's to setup a Span port due to the back of the ASA actually being a switch.

On my 5520, I do not see the switchport command listed when issuing a ? via the CLI. How do people monitor traffic on non-5505's? My goal is to connect our IDS/IPS device that is running is promiscuous mode to a Ethernet port on the 5520 to monitor WAN traffic. I do not want to have to pass the WAN traffic through a switch as it would require me to get two (for redundancy) STP/switchport capable switches.

Guide to setting up switchport access on a 5505: http://www.wr-mem.com/?p=66

© Server Fault or respective owner

Related posts about cisco

Related posts about asa