12-16-2004 11:17 AM - edited 03-10-2019 01:11 AM
Can the IDS 4210 provide blocking and alerting functions for those packets matching the defined patterns?
I was told that 4210 cannot do blocking and alterting. Is this correct? If not, does it have to do with the ways to configure it?
12-16-2004 01:54 PM
The 4210 cannot in and of itself block anything or provide alerts. It mionitors for events. What it can go is be logged into a PIX or a router and issue commands to the PIX or Router to block (shun) whatever malicious traffic it sees.
When used in conjuntion with VMS you can configure alerts.
I believe that all of the current models that are not end-of-sale are either in-line or in-line capable meaning that the traffic flows through them and they are capable of blocking on their own. Alerting I am not so sure about.
http://www.cisco.com/en/US/products/hw/vpndevc/ps4077/index.html
Hope this helps.
Please rememeber to rate all replies
12-16-2004 02:33 PM
What is a VMS? Thanks.
12-16-2004 02:49 PM
http://www.cisco.com/en/US/products/sw/cscowork/ps2330/index.html
A central management software that allows for configuration and monitoring of PIX Firewalls, Cisco Security Agents , IDS and VPN devices.
Hope this helps. Thanks for the rating. So many people here get good answers and forget to rate
Travis
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide