Cisco – How to temporarily disable a Cisco IPS module for troubleshooting

ciscoipstroubleshooting

I have a Cisco IPS module running in my ASA 5510 firewall.

Right now I'm trying to troubleshoot a network/VPN problem that two of my users are having when they VPN into a remote partners site.

I would like to turn off the IPS module to determine if it is blocking anything and thus causing the problem.

Is there an easy way to do this without losing all of my configuration? I only want to disable it for a few minutes to see if the problem goes away or not.

Thanks

Best Answer

From your ASDM on the 5510, go to CONFIGURATION > FIREWALL > SERVICE POLICY RULES and disable the service policy rule that is diverting traffic to the IPS module