Appendix A Intrusion Detection System Architecture
System Overview
A-2
Cisco Intrusion Detection System Appliance and Module Installation and Configuration Guide Version 4.1
78-15597-02
Software Architecture Overview
IDS software runs on the Linux operating system. We have hardened the Linux
OS by removing unnecessary packages from the OS, disabling unused services,
restricting network access, and removing access to the shell.
Figure A-1
illustrates the software architecture:
Figure A-1
System Design
119095
FTP/SCP
Server
NTP
Server
MainApp
CLI
AuthenticationApp
IDAPI
Alarm Channel
Sensor
Syslog
Sensor
CT Source
Master Blocking Sensor
EventServer/CT Server/IDM
Web Server
IEV/MDC/...
Browsers
SNMP Server
NotificationApp
NAC
EventStore
Router
Switch
PIX
Telnet
SSH/SCP
Telnet/SSH(3DES)
RDEP-HTTP/SSL
HTTP/SSL
LoggerApp
SNMP
Traps
Содержание IDS-4230-FE - Intrusion Detection Sys Fast Ethernet Sensor
Страница 4: ......
Страница 450: ...Appendix B Troubleshooting ...