cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
326
Views
0
Helpful
1
Replies

Can IDS-4250 shun only one of multiple managed devices?

s.demosthenous
Level 1
Level 1

I have an IDS-4250 that is monitoring 2 PIX

firewall.If an attack is generated the IDS sends a shun command to both PIX.Is it posible to block only one of the PIX.

If i use a second monitoring interface to manage the second pix would this help not to be blocked by the IDS?

1 Reply 1

ebreniz
Level 6
Level 6

As far as my understanding of IDS (4235) goes, IDS will send the shun to all the devices it manages. There is no configuration option to specifiy which devices to be shunned. So all devices are shunned. I believe this should be true for 4250 as well. Can anyone confirm this?

Review Cisco Networking products for a $25 gift card