10-19
Cisco Intrusion Detection System Appliance and Module Installation and Configuration Guide Version 4.1
78-15597-02
Chapter 10 Configuring the Sensor Using the CLI
Sensor Initial Configuration Tasks
Step 6
You can type an optional netmask to specify allowed networks.
sensor(config-Host-net)# accessList ipAddress
ip_address
netmask
netmask
Step 7
Exit configuration mode for network parameters:
sensor(config-Host-net)# exit
sensor(config-Host)# exit
You are prompted to apply the changes:
Apply Changes?:[yes]:
Step 8
Type yes to apply the changes.
After the sensor has finished processing the configuration changes, the
sensor(config)#
prompt is displayed.
Adding Known Hosts to the SSH Known Hosts List
You must add hosts to the SSH known hosts list so that the sensor can recognize
the hosts that it can communicate with through SSH. These hosts are SSH servers
that the sensor needs to connect to for upgrades and file copying, and other hosts,
such as Cisco routers, PIX Firewalls, and Catalyst switches.
To add a host to the SSH known hosts list, follow these steps:
Step 1
Log in to the CLI using an account with administrator or operator privileges.
Step 2
Enter configuration mode:
sensor# configure terminal
Step 3
Specify an SSH known host:
sensor(config)# ssh host-key
ip_address
For example, to add the remote host 10.16.0.0 to the SSH known hosts list, type
the following command:
sensor(config)# ssh host-key
10.16.0.0
Содержание IDS-4230-FE - Intrusion Detection Sys Fast Ethernet Sensor
Страница 4: ......
Страница 450: ...Appendix B Troubleshooting ...