01-21-2008 12:57 AM - edited 03-10-2019 03:56 AM
Hi
In my network cisco IPS is working act as an IDS mode.
have any command that without see the physical connectivity and known the mode to see the IPS working as IDS mode or IPS mode or if have no like this command then BY IDM i can get the infrmation ?
Thanks
Biplob
01-23-2008 12:23 AM
no commands !
01-24-2008 04:14 AM
Yes, many commands can show this:
sensor# sh stat virtual-sensor
can give you a hint:
List of interfaces monitored by this virtual sensor = Pair1 subinterface 0
for IPS mode and:
List of interfaces monitored by this virtual sensor = FastEthernet0/1 subinterface 0
for IDS mode.
Or use:
S1# show interfaces brief
CC Interface Sensing State Link Inline Mode Pair Status
* FastEthernet0/0 Disabled Up
FastEthernet0/1 Enabled Up Unpaired N/A
FastEthernet1/0 Disabled Down Unpaired N/A
FastEthernet1/1 Disabled Down Unpaired N/A
FastEthernet1/2 Disabled Down Unpaired N/A
FastEthernet1/3 Disabled Down Unpaired N/A
for IDS mode or:
CC Interface Sensing State Link Inline Mode Pair Status
* FastEthernet0/0 Disabled Up
FastEthernet0/1 Enabled Up Paired with interface FastEthernet1/0 Up
FastEthernet1/0 Enabled Up Paired with interface FastEthernet0/1 Up
FastEthernet1/1 Disabled Down Unpaired N/A
FastEthernet1/2 Disabled Down Unpaired N/A
FastEthernet1/3 Disabled Down Unpaired N/A
for IPS mode.
Or use setup.
01-28-2008 09:17 AM
thanks
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide