6-4
Installing Cisco Intrusion Prevention System Appliances and Modules 5.0
78-16124-01
Chapter 6 Installing AIP-SSM
Installation and Removal Instructions
Step 9
Install the most recent Cisco IPS software.
See
Obtaining Cisco IPS Software, page 10-1
for the procedure.
Step 10
Configure AIP-SSM to receive IPS traffic.
For the procedure, refer to
Sending Traffic to AIP-SSM
.
For More Information
•
For the procedure for using HTTPS to log in to IDM and ASDM, refer to
Logging In to IDM
.
•
For the procedures for configuring intrusion prevention on your sensor, refer to the following
documents:
–
Installing and Using Cisco Intrusion Prevention System Device Manager 5.0
–
Configuring the Cisco Intrusion Prevention System Sensor Using the Command Line Interface
5.0
Verifying the Status of AIP-SSM
You can use the show module 1 command to verify that AIP-SSM is up and running.
To verify the status of AIP-SSM, follow these steps:
Step 1
Log in to ASA.
Step 2
Verify the status of AIP-SSM:
asa#
show module 1
Mod Card Type Model Serial No.
--- -------------------------------------------- ------------------ -----------
1 ASA 5500 Series Security Services Module-20 ASA-SSM-20 P2B000005D0
Mod MAC Address Range Hw Version Fw Version Sw Version
--- --------------------------------- ------------ ------------ ---------------
1 000b.fcf8.0144 to 000b.fcf8.0144 0.2 1.0(9)0 5.0(0.27)S129.0
Mod Status
--- ------------------
1 Up
asa#
If the status reads
Up
, AIP-SSM has been properly installed.
The following values are valid for the Status field:
•
Initializing—AIP-SSM is being detected and the control communication is being initialized by the
system.
•
Up—AIP-SSM has completed initialization by the system.
•
Unresponsive—The system encountered an error communicating with AIP-SSM.
•
Reloading—AIP-SSM is reloading.
•
Shutting Down—AIP-SSM is shutting down.