11-02-2004 02:24 AM - edited 02-20-2020 11:43 PM
hi
Can i configure the IDS 4235 for IP blocking and TCP reset with the PIX 515E to :
If yes, could you please send me the URL for configuration details.
Best Regards
11-02-2004 11:56 AM
IP Blocking and TCP Reset are two different and separate response mechnisms that Cisco IDS can use to deflect unwanted traffic based on IDS signatures.
TCP Reset is initiated by the sensor itself and is done independently of any Cisco Router or PIX Firewall. Details on how to configure it can be found here:
Using IDM and IEV - http://www.cisco.com/en/US/products/sw/secursw/ps2113/products_configuration_example09186a00801c0e11.shtml
Using VMS IDS MC - http://www.cisco.com/en/US/products/sw/secursw/ps2113/products_configuration_example09186a00801e817f.shtml
IP Blocking can be done using any compatible Cisco router or PIX Firewall, and I believe the PIX 515E supports the feature. Details on how to configure it can be found here:
Using IDM and IEV - http://www.cisco.com/en/US/products/sw/secursw/ps2113/products_configuration_example09186a00801c0e3c.shtml
Using VMS IDS MC - http://www.cisco.com/en/US/products/sw/secursw/ps2113/products_configuration_example09186a00801e8181.shtml
I hope this helps,
Alex Arndt
11-03-2004 01:57 AM
Hi
on the IDS MC side it is ok. But on ths PIX 515E, are there any additional commands to set up the IP Blocking and TCP reset?
best regards
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide