Security Features; Mainapp - Cisco 4215 - Intrusion Detection Sys Sensor Configuration Manual

Configuration guide
Hide thumbs Also See for 4215 - Intrusion Detection Sys Sensor:
Table of Contents

Advertisement

Appendix A
System Architecture

Security Features

IPS 5.0 has the following security features:

MainApp

MainApp now includes all IPS components except SensorApp and the CLI. This section describes
MainApp, and contains the following topics:
78-16527-01
Tune
You make minor modifications to the configuration, primarily to the Analysis Engine, which is the
portion of the application that monitors network traffic. You can tune the system frequently after
initially installing it on the network until it is operating efficiently and only producing information
you find useful. You can create custom signatures, enable features, or apply a service pack or
signature update. You can tune IPS 5.0 through the CLI, IDM, IDS MC, ASDM or through another
application using RDEP2 and IDCONF.
Update
You can schedule automatic updates or apply updates immediately to the applications and signature
data files. You can update IPS 5.0 through the CLI, IDM, IDS MC, ASDM or through another
application using RDEP2 and IDCONF
Retrieve information
You can retrieve data (status messages, errors, and alarms) from the system through the CLI, IDM,
IDS MC, ASDM or another application using RDEP or RDEP2.
Network access is restricted to hosts who are specifically allowed access.
All remote hosts who attempt to connect through Web Server, SSH and SCP or Telnet will be
authenticated.
By default Telnet access is disabled. You can choose to enable Telnet.
By default SSH access is enabled.
An FTP server does not run on the sensor. You can use SCP to remotely copy files.
By default Web Server uses TLS or SSL. You can choose to disable TLS and SSL.
Unnecessary services are disabled.
Only the SNMP set required by the Cisco MIB Police is allowed within the CISCO-CIDS-MIB.
OIDs implemented by the public domain SNMP agent will be writeable when specified by the MIB.
MainApp Responsibilities, page A-6
Event Store, page A-7
NotificationApp, page A-9
CtlTransSource, page A-11
Network Access Controller, page A-12
LogApp, page A-19
AuthenticationApp, page A-20
Web Server, page A-22
Cisco Intrusion Prevention System Sensor CLI Configuration Guide for IPS 5.0
MainApp
A-5

Advertisement

Table of Contents
loading

Table of Contents