Cisco 4215 - Intrusion Detection Sys Sensor Configuration Manual page 91

Configuration guide
Hide thumbs Also See for 4215 - Intrusion Detection Sys Sensor:
Table of Contents

Advertisement

Chapter 5
Configuring Interfaces
The following options apply:
physical-interfaces—FastEthernet or GigabitEthernet. For a list of possible interfaces for your
sensor, see
admin-state [enabled | disabled]—The administrative link state of the interface, whether the
interface is enabled or disabled.
Note
alt-tcp-reset-interface—Sends TCP resets out an alternate interface when this interface is used for
promiscuous monitoring and the reset action is triggered by a signature firing. For more information
on when to use the TCP reset interface, see
Note
default—Sets the value back to the system default setting.
description—Your description of the promiscuous interface.
duplex—The duplex setting of the interface.
no—Remove an entry or selection setting.
speed—The speed setting of the interface.
78-16527-01
Interface Support, page
On all backplane sensing interfaces on all modules (IDSM-2 NM-CIDS, and AIP-SSM),
admin-state is set to enabled and is protected (you cannot change the setting). The
admin-state has no effect (and is protected) on the command and control interface. It only
affects sensing interfaces. The command and control interface does not need to be enabled
because it cannot be monitored.
This option is not supported on modules (IDSM-2 NM-CIDS, and AIP-SSM) and appliances
that only have one sensing interface (IDS-4210, IDS-4215,IDS-4235, and IDS-4250 without
any additional NIC cards).
interface-name—The name of the interface on which TCP resets should be sent when this
interface is used for promiscuous monitoring and the reset action is triggered by a signature
firing. This setting is ignored when this interface is a member of an inline interface.
none —Disables the use of an alternate TCP reset interface. TCP resets triggered by the reset
action when in promiscuous mode will be sent out of this interface instead.
auto—Sets the interface to auto negotiate duplex.
full—Sets the interface to full duplex.
half—Sets the interface to half duplex.
Note
The duplex option is protected on all modules.
auto—Sets the interface to auto negotiate speed.
10—Sets the interface to 10 MB (for TX interfaces only).
100—Sets the interface to 100 MB (for TX interfaces only).
1000—Sets the interface to 1 GB (for Gigabit interfaces only).
The speed option is protected on all modules.
Note
Cisco Intrusion Prevention System Sensor CLI Configuration Guide for IPS 5.0
5-2.
Understanding TCP Reset, page
Promiscuous Mode
5-4.
5-5

Advertisement

Table of Contents
loading

Table of Contents