B-27
Cisco Intrusion Detection System Appliance and Module Installation and Configuration Guide Version 4.1
78-15597-02
Appendix B Troubleshooting
Troubleshooting the 4200 Series Appliance
d.
Start the manual block for a bogus host IP address:
sensor(config-NetworkAccess-gen)# shun-hosts ip-address 10.16.0.0
e.
Exit and accept changes:
sensor(config-NetworkAccess-gen-shu)# exit
sensor(config-NetworkAccess-gen)# exit
sensor(config-NetworkAccess)# exit
Apply Changes:? [yes]: yes
sensor(config)# exit
sensor#
Step 4
Verify that the block shows up in the NAC’s statistics:
sensor# show statistics networkAccess
Current Configuration
AllowSensorShun = false
ShunMaxEntries = 100
State
ShunEnable = true
ShunnedAddr
Host
IP = 10.16.0.0
ShunMinutes =
Step 5
Log in to the MBS host’s CLI and, using the show statistics networkAccess
command, verify that the block also shows up in the MBS NAC’s statistics.
sensor# show statistics networkAccess
Current Configuration
AllowSensorShun = false
ShunMaxEntries = 250
MasterBlockingSensor
SensorIp = 10.89.149.46
SensorPort = 443
UseTls = 1
State
ShunEnable = true
ShunnedAddr
Host
IP = 10.16.0.0
ShunMinutes = 60
MinutesRemaining = 59
Содержание IDS-4230-FE - Intrusion Detection Sys Fast Ethernet Sensor
Страница 4: ......
Страница 450: ...Appendix B Troubleshooting ...