Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

cisco ids 3.0(5): need help in getting started

I am new to cisco IDS. I just configured the PIX firewall and now I need to configure Cisco IDS 3.0(5).

All I know about is the following information, that I got from the catalyst switch in which it is installed.

#module 5 : 2-port Intrusion Detection

set port gvrp 5/2 disable

set security acl capture-ports 5/1

and

Catalyst 6509> (enable) show module 5

Mod Slot Ports Module-Type Model Sub Status

--- ---- ----- ------------------------- ------------------- --- --------

5 5 2 Intrusion Detection Syste WS-X6381-IDS no ok

Mod Module-Name Serial-Num

--- ------------------- -----------

5 SAD05050GKG

Mod MAC-Address(es) Hw Fw Sw

--- -------------------------------------- ------ ---------- ----------------

5 00-03-32-83-08-32 to 00-03-32-83-08-33 1.1 4B4LZ0XA 3.0(5)S29

Please guide to me to any documents on the net that would help me get started and understand what is in place already.

Also, how do I check for any existing configurations made to the IDS? and how do I check for the IP address of the IDS

Thanks

1 REPLY
Cisco Employee

Re: cisco ids 3.0(5): need help in getting started

User Guides are located on CCO at this location:

http://www.cisco.com/univercd/cc/td/doc/product/iaabu/csids/idsm/idsm_2/index.htm

Basic configuration of the IDS module can be seen by sessioning to the module and executing "show configuration". The CLI of the module only supports basic configuration of the modules IP, Name, Netmask, Default Router, etc. Detailed IDS configuration can not be done through the module's CLI.

As for detailed configuration of the IDS module, you will need either CSPM v2.3.1, or the newer IDS Management Center (IDS MC) and Security Monitor (SecMon) available as part of VMS.

http://www.cisco.com/en/US/partner/products/sw/cscowork/ps2330/index.html

Note: There is a new hardware version of the IDS Module that has been recently announced and is being released next month IDSM2. It provides better performance than the original IDS module, and has feature parity with the version 4.0 IDS appliances.

http://newsroom.cisco.com/dlls/prod_021803.html

95
Views
0
Helpful
1
Replies
CreatePlease login to create content