Cisco 4215 - Intrusion Detection Sys Sensor Configuration Manual page 281

Configuration guide
Hide thumbs Also See for 4215 - Intrusion Detection Sys Sensor:
Table of Contents

Advertisement

Chapter 15
Configuring IDSM-2
Verify the configuration:
Step 6
Note
Verify the IDSM-2 intrusion detection settings:
a.
router# show run | include intrusion-detection
intrusion-detection module 13 management-port access-vlan 147
intrusion-detection module 13 data-port 1 access-vlan 661
intrusion-detection module 13 data-port 2 access-vlan 662
router#
Verify that the IDSM-2 data port 1 is an access port on VLAN 661:
b.
router# show intrusion-detection module slot_number data-port data_port_number state
Example:
router# show intrusion-detection module 13 data-port 1 state
Intrusion-detection module 13 data-port 1:
Switchport: Enabled
Administrative Mode: static access
Operational Mode: static access
Administrative Trunking Encapsulation: dot1q Operational Trunking Encapsulation:
native Negotiation of Trunking: Off Access Mode VLAN: 661 (inline-vlan-1) Trunking
Native Mode VLAN: 1 (default) Trunking VLANs Enabled: NONE Pruning VLANs Enabled:
2-1001 Vlans allowed on trunk:661 Vlans allowed and active in management domain: 661
Vlans in spanning tree forwarding state and not pruned: 661
Administrative Capture Mode: Disabled
Administrative Capture Allowed-vlans: <empty>
Verify the VLAN number:
c.
router# show vlan id vlan_number
Example:
router# show vlan id 661
VLAN Name
---- -------------------------------- --------- -------------------------------
661
VLAN Type
---- ----- ---------- ----- ------ ------ -------- ---- -------- ------ ------
661
Remote SPAN VLAN
----------------
Disabled
Primary Secondary Type
------- --------- ----------------- ------------------------------------------
router#
78-16527-01
In these examples, the IDSM-2 in slot 13 is inline between VLANs 661 and 662. The IDSM-2
data port 1 is on VLAN 661 and data port 2 is on VLAN 662.
ward-attack3
SAID
MTU
enet
100661
1500
Cisco Intrusion Prevention System Sensor CLI Configuration Guide for IPS 5.0
Configuring the Catalyst Series 6500 Switch for IDSM-2 in Inline Mode
Status
Ports
active
Gi3/2, Gi13/d1
Parent RingNo BridgeNo Stp
-
-
-
Ports
BrdgMode Trans1 Trans2
-
-
0
0
15-19

Advertisement

Table of Contents
loading

Table of Contents