10-65
Cisco Intrusion Detection System Appliance and Module Installation and Configuration Guide Version 4.1
78-15597-02
Chapter 10 Configuring the Sensor Using the CLI
Sensor Configuration Tasks
Step 8
Type yes to apply changes.
Note
There is a time delay while the signatures are updated.
Configuring Addresses Never to Block
You must tune your sensor to identify hosts and networks that should never be
blocked, not even manually, because you may have a trusted network device
whose normal, expected behavior appears to be an attack. Such a device should
never be blocked, and trusted, internal networks should never be blocked.
You can specify a single host or an entire network.
If you specify a netmask, this is the netmask of the network that should never be
blocked. If no netmask is specified, only the IP address you specify will never be
blocked.
To set up addresses never to be blocked by blocking devices, follow these steps:
Step 1
Log in to the CLI using an account with administrator privileges.
Step 2
Enter configuration mode:
sensor# configure terminal
Step 3
Enter network access mode:
sensor(config)# service networkAccess
Step 4
Enter general submode:
sensor(config-NetworkAccess)# general
Summary of Contents for IDS-4230-FE - Intrusion Detection Sys Fast Ethernet Sensor
Page 4: ......
Page 450: ...Appendix B Troubleshooting ...