Chapter 10 Configuring the Sensor Using the CLI
Sensor Configuration Tasks
10-44
Cisco Intrusion Detection System Appliance and Module Installation and Configuration Guide Version 4.1
78-15597-02
Note
You can view a list of all system variables by typing a question mark (?)
at the
sensor(config-vsc-virtualSensor-sys)#
prompt.
•
WEBPORTS—WEBPORTS is a predefined set of ports where web servers
are running. The default value for this variable includes the following ports:
80, 3128, 8000, 8010, 8080, 8888, 24326. This variable is referenced by all
web server signatures.
•
Ports1, Ports2, Ports3, Ports4—You can set up a list of ports to apply to
particular signatures.
•
ADDRS1, ADDRS2, ADDRS3, ADDRS4—You can set up this variable with
a list of addresses to use anywhere you can use IP addresses.
•
IPReassembleMaxFrags—You can define the total number of fragments you
want the system to queue. You can define a number between 1000 and 50,000.
The default is 10,000.
Step 8
View your changes:
sensor(config-vsc-virtualSensor-sys)# show settings
The settings for the system variables are displayed. In the example above, the
settings for the IPReassembleMaxFrags variable appear as
IPReassembleMaxFrags: 5000 default: 10000
.
Step 9
To return any value to the default setting, type the keyword default before the
variable name.
For example, to return the IPReassembleMaxFrags to 10000 (the default value),
type the following command:
sensor(config-vsc-virtualSensor)# default IPReassembleMaxFrags
The IPReassembleMaxFrags value is returned to the default value and settings for
the IPReassembleMaxFrags appear as
IPReassembleMaxFrags: 10000
<defaulted>
.
Step 10
Exit system variable mode:
sensor(config-vsc-virtualSensor-sys)# exit
sensor(config-vsc-virtualSensor)# exit
Apply Changes?:[yes]:
Summary of Contents for IDS-4230-FE - Intrusion Detection Sys Fast Ethernet Sensor
Page 4: ......
Page 450: ...Appendix B Troubleshooting ...