A-17
Cisco Intrusion Detection System Appliance and Module Installation and Configuration Guide Version 4.1
78-15597-02
Appendix A Intrusion Detection System Architecture
System Components
This section contains the following topics:
•
About NAC, page A-17
•
NAC-Controlled Devices, page A-19
•
NAC Features, page A-19
•
ACLs and VACLs, page A-22
•
Maintaining State Across Restarts, page A-23
•
Connection-Based and Unconditional Blocking, page A-24
•
Blocking with the PIX Firewall, page A-25
•
Blocking with the Catalyst 6000, page A-27
About NAC
The NAC application’s main responsibility is to block events. When it responds
to a block, it either interacts with the devices it is managing directly to enable the
block or it sends a block request through the Control Transaction Server to a
master blocking sensor. The WebServer on the master blocking sensor receives
the control transaction and passes it to the Control Transaction Server, which
passes it to the NAC application. The NAC application on the master blocking
sensor then interacts with the devices it is managing to enable the block.
Figure A-2
illustrates the NAC application.
Summary of Contents for IDS-4230-FE - Intrusion Detection Sys Fast Ethernet Sensor
Page 4: ......
Page 450: ...Appendix B Troubleshooting ...