I'm looking for help in configuring our IDS 2410 v3.1 to use our PIX for IP Blocking.
IDS will sit and sniff between the outside interface of the PIX and our ISP's router. The management port of the IDS wil be routed thru a switch on the inside network which uses the PIX inside interface as a gateway.
Setup of blocking calls for an IP address of the PIX. Should that be the IP of the outside or inside interface?
I see that on the PIX we are not able to define which interface to use for blocking. So, which interface does the blocking? (perhaps the IP we input above?)
Thanks for any help.
Tony