Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

IDS and CSPM Config from Scratch

I want to install IDS and CSPM from scratch . Anybody can give me the link which can help me to install both IDS and CSPM ? I have the book for CSIDS , which chapters should i read 1st . I know i should read the whole book but because of time i could'nt read , so if anybody can tell me which chapters to read 1st will save my time .

3 REPLIES
Silver

Re: IDS and CSPM Config from Scratch

You could use the Quick start guide to install the IDS and then you could install CSPM. The links are given below.

http://www.cisco.com/univercd/cc/td/doc/product/iaabu/csids/csids9/15282_01.htm

http://www.cisco.com/univercd/cc/td/doc/product/ismg/policy/ver30/quickone.htm

You can also find the installation guide for the version that you are using by checking the technical documentation.

New Member

Re: IDS and CSPM Config from Scratch

Not sure if you meant install or install and config. After the CSPM software is installed, here's a really good summary document for getting the IDS up and running, sending alarms to CSPM.

Configuring a Cisco Secure IDS Sensor in CSPM

http://www.cisco.com/warp/public/707/ids2cspm_6117.html

HTH

Jeff

New Member

Re: IDS and CSPM Config from Scratch

- Install the IDS first and configure it with an IP address and subnet mask etc.

- Define the Management Server's IP address as part of the IDS configuration.

(Login as root, the run 'sysconfig-sensor'. Step through the menus from top down and enter the relevent details that suit your installation.)

-Confirm basic IP connectivity between the management server and the IDS Sensor.

At this stage you should be in a position to install CSPM.

You will need to ensure you meet the pre-reks for CSPM, for example if you need sp3 installed then install sp3 only not sp6a or the install will not work.

- Ensure you have a license for the CSPM product.

- Run the install program and ensure you select standalone install.

- except all defaults.

- after you have install the product reboot the server.

You should now have them product installed and ready to startconfiguring the product to communicate with the IDS Sensor.

Note if you have any firewalls between the Sensor and the Management server, ensure you punch a hole throught he firewall for UDP port 450000, both directions. This is the communications port between the sensor and the CPSM(PostOffice).

OK the rest is up to you now, time to put that reading into pratices like the rest of us ;-)

Hope it goes well, if not then start again.

97
Views
0
Helpful
3
Replies
CreatePlease login to create content