A-47
Cisco Intrusion Detection System Appliance and Module Installation and Configuration Guide Version 4.1
78-15597-02
Appendix A Intrusion Detection System Architecture
System Architectural Details
•
IDS events
–
Subscribes to remote IDS events, which are stored in the local EventStore
when received.
–
Reads IDS events from the local EventStore.
–
Writes IDS events to the local EventStore.
IDAPI provides the necessary synchronization mechanisms to guarantee atomic
data accesses.
RDEP
Remote applications can retrieve events from the sensor through RDEP. The
remote client sends an RDEP event request to the sensor’s WebServer, which
passes it to the EventServer. The EventServer queries the EventStore through
IDAPI and then returns the result.
Figure A-5 on page A-47
shows remote
applications retrieving events from the sensor through RDEP.
Figure A-5
Retrieving Events Through RDEP
119098
RDEP
Client
IDAPI
EventStore
Sensor
Event
Request
Event
EventServer
WebServer
Events
Event
Request
Event
HTTP GET
IEV, IDS-MC, Third Party Event
Management Applications
Содержание IDS-4230-FE - Intrusion Detection Sys Fast Ethernet Sensor
Страница 4: ......
Страница 450: ...Appendix B Troubleshooting ...