B-29
Cisco Intrusion Detection System Appliance and Module Installation and Configuration Guide Version 4.1
78-15597-02
Appendix B Troubleshooting
Troubleshooting the 4200 Series Appliance
To enable debug logging, follow these steps:
Step 1
Log in to the service account.
Step 2
Edit the log.conf file to increase the size of the log to accommodate the additional
log statements:
vi /usr/cids/idsRoot/etc/log.conf
Step 3
Change the
fileMaxSizeInK=500
to
fileMaxSizeInK=5000
.
Step 4
Locate the zone/CID section of the file and set the severity to debug:
severity=debug
Step 5
Save the file, exit the vi editor, and exit the service account.
Step 6
Log in to the CLI as administrator.
Step 7
Enter configuration mode:
sensor# configure terminal
Step 8
Enter service logger mode:
sensor(config)# service logger
Step 9
Enter master-control submode:
sensor(config-Logger)# masterControl
Step 10
Turn individual zone control on:
sensor(config-Logger-mas)# individual-zone-control true
Step 11
Exit master zone control:
sensor(config-Logger-mas)# exit
Step 12
View the zone names:
sensor(config-Logger)# show settings
masterControl
-----------------------------------------------
enable-debug: false default: false
individual-zone-control: true default: false
-----------------------------------------------
zoneControl (min: 0, max: 999999999, current: 8)
-----------------------------------------------
zoneName: Cid default: Cid
severity: debug default: debug
Summary of Contents for IDS-4230-FE - Intrusion Detection Sys Fast Ethernet Sensor
Page 4: ......
Page 450: ...Appendix B Troubleshooting ...