B-15
Cisco Intrusion Detection System Appliance and Module Installation and Configuration Guide Version 4.1
78-15597-02
Appendix B Troubleshooting
Troubleshooting the 4200 Series Appliance
Step 3
Make sure the sensor is seeing packets:
sensor# show interface sensing
Sensing int0 is up
Hardware is eth0, TX
Reset port
Step 4
Check for alerts:
sensor# show events alert
evAlert: eventId=1080048367680474106 severity=informational
originator:
hostId: sensor
appName: sensorApp
appInstanceId: 1102
time: 2004/06/24 13:21:33 2004/06/24 13:21:33 EST
interfaceGroup: 0
vlan: 0
signature: sigId=7102 sigName=Reply-to-Broadcast subSigId=0
version=S37
participants:
attack:
attacker: proxy=false
addr: locality=OUT 10.89.146.24
victim:
addr: locality=OUT 10.89.146.24
alertDetails: Traffic Source: int0 ;
Sensor Not Seeing Packets
If your sensor is not seeing any packets on the network, you could have the
interfaces set up incorrectly.
If your sensor is not seeing packets, follow these steps:
Step 1
Log in to the CLI.
Step 2
Make sure the interfaces are up and receiving packets:
sensor# show interfaces sensing
Sensing int0 is down
Hardware is eth0, TX
Reset port
Содержание IDS-4230-FE - Intrusion Detection Sys Fast Ethernet Sensor
Страница 4: ......
Страница 450: ...Appendix B Troubleshooting ...