Currently, I view my syslogs with the Kiwi Syslog Daemon on a box in my dmz. I would like to add syslog viewing on my workstation on the inside interface.Is it possible to enable two logging hosts for syslog viewing?Thanks, Ben
Currently, I view my syslogs with the Kiwi Syslog Daemon on a box in my dmz. I would like to add syslog viewing on my workstation on the inside interface.Is it possible to enable two logging hosts for syslog viewing?Thanks, Ben
I want to restore ips 5.1(1) -> 4.1.But, Restore was failed.Error Message is below.--------------------------------Error: execUpgradeSoftware : idsPackageMgr: digital signature of the update file was not valid, use CCO to replace corrupted fileTarget...
New IDSM2 installation here. Just got them to work last week so no real tuning done yet. They are running in promiscuous mode with software version 5.0(5sp2). We are using CN-MARS 4.1 to collect events.I'm seeing a lot of RPC DCOM overflow events ...
Tried CISCO IDS sensor 4250-XL with the following 4 interfaces: Int0- ethernetInt1- ethernet -- command and control interfaceInt2- fiber Int3- fiber Can we use Int0 (ethernet) interface as the sensoring interface? Whenever I tried to add it to sensor...
I have a strange problem on an ips mc / secmon 2.2 solution. When I open the security monitor from a specific time and date, the console shows events that have occurred prior to the date that I requested. Before experiencing this problem, I manually ...
I have a Pix 525 with multiple DMZ's. Behind one of the DMZ's lies my public interface of a traffic mitigation server. Fron this interface the server sends out TCP resets for P2P traffic to save upstream bandwidth. I am seeing that the pix is prev...
Hi All!I would like to know a little more about the "Generic Authorization Message Exchange" Protocol (GAME) used between ACS and audit Server.Is there any documentation ? .. other source of info?I also have another question:is there any Cisco Book a...
Can anyone tell me if v5 has increased the number of user-definable alarm channel address groups (USER-ADDRS1-5)? Or better yet if it lets you create unlimited custom named groups? Failing that, how do folks generally get around this limitation? I...
Hi,I don't have any experience in selecting or implementing a host based intrusion detection package.I need a package to sit on a web server (Win 2k / 2003 with IIS), running some e-Commerce websites, and I need to make sure that this package can det...
Does any one know the syntax to export events with idsalarms.exe from specific date in VMS2.1?
hiI want opinions and suggestions if below scenario works for inline placement of IPS 4240. Or need to do differently.[vlan A on cat6509 IP 10.0.0.1 (all outgoing traffic is routed to 10.0.0.2-pix) ] + one port of inline pair port of IPS ==> VLAN B ...
I recently upgraded a PIX from 6.3(3) to 6.3(5) for a client a couple of Fridays ago. Their network is flat, and consists of Win2K, WinXP, and MACs (running AppleTalk and IP). They have a single internal L2 3Com switch. The configuration is straightf...
Dear All,I would like to block a single IP in the LAN (inside network )to access to the Internet. The following is the configurationaccess-list inside_access_in deny tcp host 192.168.1.247 anyaccess-list inside_access_in permit tcp any anyaccess-grou...
We are configuring an IDS 4215 and a Pix 501. We can manually add a block in the IDS which updates the Pix, but no matter what setting on a signature is made the IDS will not automatically add the block to the pix when the signture is detected. Thank...
I don't understand why this is firing. It looks like it should only fire if there is a non-numeric value for the query parameter graph_start...which there isn't. Here are the details.Arg Name Regex: [Gg][Rr][Aa][Pp][Hh][_][Ss][Tt][Aa][Rr][Tt][=]Arg V...
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide
Subject | Author | Posted |
---|---|---|
07-16-2025 04:21 AM | ||
07-06-2025 01:40 PM | ||
07-04-2025 01:59 AM | ||
06-19-2025 07:32 AM | ||
06-17-2025 01:07 PM |
User | Count |
---|---|
8 | |
6 | |
5 | |
3 | |
1 |