RE: [nsp] Catalyst 6000 IDS experience?

From: Rubens Kuhl Jr. (rkuhljr@uol.com.br)
Date: Tue Mar 26 2002 - 17:50:10 EST


No hands-on experience on this card, but I will share some conclusions
I've come to while deciding not to go with this module.

Its strength compared to IDS-on-a-box (either Cisco, Enterasys,
Nokia+ISS, BSD+Snort, whatever) is the multiple VLAN attach capability;
the traffic redirection capabilities of Cat 6K, which are very good
indeed, can be explored with both the IDS module or with separate boxes.

If you have many VLANs, the aggregate traffic of all VLANs fits into the
IDS-module capability (slitghly above 100 Mbps), you are not running or
intending to run Supervisor IOS, and not using or thinking on using
switch fabric, it might be a good choice.

Rubens Kuhl Jr.

-----Original Message-----
From: matthew zeier [mailto:mrz@intelenet.net]
Sent: Tuesday, March 26, 2002 2:36 PM
To: cisco-nsp@puck.nether.net
Subject: [nsp] Catalyst 6000 IDS experience?

Anyone have working experience with Cisco's Catalyst 6000 IDS module?
Is it worth the $15k list price?

- mz

--
matthew zeier - "In mathematics you don't understand things.  You just
get used to them." - Johann von Neumann



This archive was generated by hypermail 2b29 : Sun Aug 04 2002 - 04:13:38 EDT