I am installing Okena host IDS (purchased before Cisco bought them) on our IP telephony servers, and have been searching for a Cisco guide for setting this up. Cisco probably includes default policies for AVVID servers with the Okena product, but I can't find any docs on CCO.
FYI...One of the newer versions of Call Manager is going to included (or malready does) the Cisco Security Agent (Okena) Just a thought if you have a contract on the servers then you could upgrade to the version with CSA included for free and put the other agents elsewhere. I will try to find some info either way and post it later.
The agent is supposed to be included in 3.3(3), but I can find no mention of it in the system guide. Free agents would be nice, but right now I'm just looking for a little guidance with configuring policies.
I think this will have to the way of TAC. I think what happened is this. Entercept gets to be the only approved HIDS on CM. The only documentation on HIDS and CM deals with Entercept naturally. The relationship with Cisco and Entercept went south. Cisco said screw this and went and got Okena. The aquisition of Okena went fairly quickly and this left a gap in documentation. Since the intention was to buy Okena there was no work put into the development of documentation pre-aquisition.
The only docs I found are the same ones you have found.Sorry I could not be of more help. I didn't even find anything on the free agents supposedly included with 3.3(3)..bummer
You have reached the Cisco Logistics Support Center.. To Check Status of
your RMA, visit Product Returns & Replacements (RMA). Need help? Contact
us by Phone or Email. North Americas Phone: 1800 553 2447 Option 4
Email: email@example.com Europe Phone: +3...
The short answer is that you don't.... That isn't entirely true while at
the same time it kind of is, but for the most part you don't configure
the softkeys. You enable or disable them via TCL. Here is the long
answer. Be sure to read the whole thing or e...
Topology: IP Phone > Switches > Microsoft NPS setup to forward 802.1x
proxy to > ISE 2.1 patch 3 Authentication: EAP-TLS using Cisco MIC SANs
Phone Models 802.1X support? 802.1x flavor Addtl Comment EAP-MD5 EAP-TLS
Cisco 3905 Y Y N Cisco 6911 Y Y N Cisco ...