C H A P T E R
3-1
User Guide for Cisco Security MARS Local Controller
78-17020-01
3
Configuring Router and Switch Devices
This chapter describes how to bootstrap routers and switches and add those reporting devices and
mitigation devices to MARS. It also describes how to configure NetFlow, NAC’s EAP over UDP and
802.1x logging, and the Layer 2 (L2) mitigation features of switches.
Routers and switches provide MARS with data about traffic flows and the network topology, including
address translations, endpoint devices, connected networks, and accepted and rejected sessions. Routers
and switches also support modules that enable features common to specialty security appliances, such
as firewalls and intrusion detection or prevention systems (IDS/IPS). This chapter does not describe how
to enable the features on routers and switches that enable the modules or how to configure these modules
for use by MARS. Such discussions are provided in
Configuring Firewall Devices, page 4-1
, and
Configuring Network-based IDS and IPS Devices, page 6-1
.
This chapter explains how to bootstrap and add the following router and switch devices to MARS:
•
Cisco Router Devices, page 3-1
•
Cisco Switch Devices, page 3-9
•
Extreme ExtremeWare 6.x, page 3-17
•
Generic Router Device, page 3-18
Cisco Router Devices
To configure Cisco routers running Cisco IOS Software Release 12.2 to communicate with a MARS
Appliance, you must perform three tasks:
•
Enable Administrative Access to Devices Running Cisco IOS 12.2, page 3-1
•
Configure the Device Running Cisco IOS 12.2 to Generate Required Data, page 3-3
•
Add and Configure a Cisco Router in MARS, page 3-6
Enable Administrative Access to Devices Running Cisco IOS 12.2
You must enable administrative access by the MARS Appliance to any Cisco routers or switches running
Cisco IOS Software release 12.2 or later. The type of access that you must enable depends on whether
modules are installed in your Cisco router or switch and the role of the device in your network. MARS
uses this administrative access to discover the device’s configuration and, at times, to make changes to
the device’s running configuration. For information on selecting an administrative access method, see
Selecting the Access Type, page 2-10
.
Содержание CS-MARS-20-K9 - Security MARS 20
Страница 20: ...Contents xx User Guide for Cisco Security MARS Local Controller 78 17020 01 ...
Страница 356: ...17 16 User Guide for Cisco Security MARS Local Controller 78 17020 01 Chapter 17 Network Summary Summary Page ...
Страница 420: ...20 28 User Guide for Cisco Security MARS Local Controller 78 17020 01 Chapter 20 Queries and Reports Reports ...
Страница 580: ...Glossary GL 4 User Guide for Cisco Security MARS Local Controller 78 17020 01 ...