Chapter 5 Installing the IDS-4235 and IDS-4250
Using the TCP Reset Interface
5-8
Cisco Intrusion Detection System Appliance and Module Installation and Configuration Guide Version 4.1
78-15597-02
Caution
Do not power off or manually reboot the appliance during Step 5.
Caution
You cannot upgrade the BIOS from a console connection. You must connect a
keyboard and monitor to the appliance so that you can see the output on the
monitor.
Step 5
Boot the appliance and follow the on-screen instructions.
Step 6
Remove the BIOS update diskette from the appliance while the appliance is
rebooting, otherwise the BIOS upgrade will be started again.
Using the TCP Reset Interface
The IDS-4250-XL has a TCP reset interface—INT0. The IDS-4250-XL has a
specific TCP reset interface because it cannot send TCP resets on its monitoring
ports.
If you have reset problems with the IDS-4250-XL, try the following:
•
Make sure the TCP reset interface of the IDS-4250-XL (int0) is connected to
the same switch as the sensing ports (int2 and int3) of the XL card.
•
If the sensing ports are access ports (a single VLAN), you need to configure
the reset port to be in the same VLAN.
Note
If the two XL ports are access ports for different VLANs, you can
only configure the reset port for one of these VLANs. You can use
dot1q trunk ports to overcome this limitation.
•
If the sensing ports are dot1q trunk ports (multi-VLAN), the sensing ports and
reset port all need to have the same native VLAN, and the reset port needs to
trunk all the VLANs being trunked by both the sensing ports.
Summary of Contents for IDS-4230-FE - Intrusion Detection Sys Fast Ethernet Sensor
Page 4: ......
Page 450: ...Appendix B Troubleshooting ...