Chapter 10 Configuring the Sensor Using the CLI
Sensor Configuration Tasks
10-76
Cisco Intrusion Detection System Appliance and Module Installation and Configuration Guide Version 4.1
78-15597-02
ShunInterface
InterfaceName = ethernet1
InterfaceDirection = in
State
ShunEnable = true
NetDevice
IP = 10.89.150.160
AclSupport = uses Named ACLs
State = Active
ShunnedAddr
Host
IP = 10.16.0.0
ShunMinutes = 15
MinutesRemaining = 15
Host
IP = 192.168.16.0
ShunMinutes = 10
MinutesRemaining = 10
The last two
Host
entries indicate which hosts are being blocked and how long the
blocks are.
How to Set up Manual Blocking and How to Unblock
If you have blocking configured, you can manually block a host. You can also
view a list of hosts that are being blocked.
Note
Manual blocks in the CLI are actually changes to the configuration, so they are
permanent. You cannot do a timed manual block. You cannot use the IDSM or IDS
MC to delete blocks created by the CLI. Manual blocks have to be removed in the
CLI.
Caution
We recommend that you use manual blocking on a very limited basis, if at all.
Содержание IDS-4230-FE - Intrusion Detection Sys Fast Ethernet Sensor
Страница 4: ......
Страница 450: ...Appendix B Troubleshooting ...