18-18
Cisco ASA Series Firewall CLI Configuration Guide
Chapter 18 ASA IPS Module
Managing the ASA IPS module
Prerequisites
•
Hardware module—Be sure the TFTP server that you specify can transfer files up to 60 MB in size.
Note
This process can take approximately 15 minutes to complete, depending on your network
and the size of the image.
•
Software module—Copy the image to the ASA internal flash (disk0) before completing this
procedure.
Note
Before you download the IPS software to disk0, make sure at least 50% of the flash memory
is free. When you install IPS, IPS reserves 50% of the internal flash memory for its file
system.
Detailed Steps
Command
Purpose
Step 1
For a hardware module (for example, the ASA
5585-X):
hw-module module 1 recover configure
For a software module (for example, the ASA
5545-X):
sw-module module ips recover configure
image disk0:
file_path
Example:
hostname# hw-module module 1 recover
configure
Image URL [tftp://127.0.0.1/myimage]:
tftp://10.1.1.1/ids-newimg
Port IP Address [127.0.0.2]: 10.1.2.10
Port Mask [255.255.255.254]: 255.255.255.0
Gateway IP Address [1.1.2.10]: 10.1.2.254
VLAN ID [0]: 100
Specifies the location of the new image.
For a hardware module—This command prompts you for the URL
for the TFTP server, the management interface IP address and
netmask, and gateway address. These network parameters are
configured in ROMMON; the network parameters you configured
in the module application configuration are not available to
ROMMON, so you must set them separately here.
For a software module—Specify the location of the image on the
local disk.
You can view the recovery configuration using the
show module
{
1
|
ips
}
recover
command.
In multiple context mode, enter this command in the system
execution space.
Содержание ASA 5512-X
Страница 5: ...P A R T 1 Service Policies and Access Control ...
Страница 6: ......
Страница 50: ...3 14 Cisco ASA Series Firewall CLI Configuration Guide Chapter 3 Access Rules History for Access Rules ...
Страница 51: ...P A R T 2 Network Address Translation ...
Страница 52: ......
Страница 126: ...5 28 Cisco ASA Series Firewall CLI Configuration Guide Chapter 5 NAT Examples and Reference DNS and NAT ...
Страница 127: ...P A R T 3 Application Inspection ...
Страница 128: ......
Страница 255: ...P A R T 4 Connection Settings and Quality of Service ...
Страница 256: ......
Страница 288: ...12 14 Cisco ASA Series Firewall CLI Configuration Guide Chapter 12 Quality of Service History for QoS ...
Страница 303: ...P A R T 5 Advanced Network Protection ...
Страница 304: ......
Страница 339: ...P A R T 6 ASA Modules ...
Страница 340: ......
Страница 398: ...17 28 Cisco ASA Series Firewall CLI Configuration Guide Chapter 17 ASA CX Module History for the ASA CX Module ...