cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
303
Views
0
Helpful
2
Replies

IDS 4235 blocking and TCP reset with the PIX 515E

mferhai
Level 1
Level 1

hi

Can i configure the IDS 4235 for IP blocking and TCP reset with the PIX 515E to :

If yes, could you please send me the URL for configuration details.

Best Regards

2 Replies 2

a.arndt
Level 3
Level 3

IP Blocking and TCP Reset are two different and separate response mechnisms that Cisco IDS can use to deflect unwanted traffic based on IDS signatures.

TCP Reset is initiated by the sensor itself and is done independently of any Cisco Router or PIX Firewall. Details on how to configure it can be found here:

Using IDM and IEV - http://www.cisco.com/en/US/products/sw/secursw/ps2113/products_configuration_example09186a00801c0e11.shtml

Using VMS IDS MC - http://www.cisco.com/en/US/products/sw/secursw/ps2113/products_configuration_example09186a00801e817f.shtml

IP Blocking can be done using any compatible Cisco router or PIX Firewall, and I believe the PIX 515E supports the feature. Details on how to configure it can be found here:

Using IDM and IEV - http://www.cisco.com/en/US/products/sw/secursw/ps2113/products_configuration_example09186a00801c0e3c.shtml

Using VMS IDS MC - http://www.cisco.com/en/US/products/sw/secursw/ps2113/products_configuration_example09186a00801e8181.shtml

I hope this helps,

Alex Arndt

Hi

on the IDS MC side it is ok. But on ths PIX 515E, are there any additional commands to set up the IP Blocking and TCP reset?

best regards

Review Cisco Networking for a $25 gift card