I have a question here....I have installed CSPM233i and I have activaed the IDS feature in the PIX..and I have servers in the inside network... Can CSPM 233i send alert such as email if there is an attack to the servers without IDS Sensor or Director ....JUST CSPM + PIX ???
The CSPM 233i release is only necessary if you are configuring and monitoring the IDS Appliance or IDS Module Sensors. If you are just using the IDS feature within the PIX then the 233f release train or even 3.0 would be better for you.
CSPM treats the PIX IDS messages differently than the IDS Sensor messages.
I assume it will treat the PIX IDS messages similar to other PIX syslog messages of the same severity.
So you would need to look through the CSPM documentation on how to send out email notifications when a certain PIX syslog message comes in.
We have configured the outside and inside Interface with official ipv6 adresses, set a default route on outside Interface to our router, we also have definied a rule , which also gets hits, to permit tcp from inside Interface to any6.
In Syslog I also se...