01-24-2007 03:03 AM - edited 03-10-2019 03:26 AM
Hi..
We have upgraded IDS 4215 to IPS version 5.1 at one of our clients. And now we have oput it in inline mode. Scenario is as follows::
Location A is connected to location B with IPS coming after router and then Firewall and then the DMZ...When i m trying to check by doing ping from location B to Location A's servers in the DMZ...noe of the icmp packets are recorded in the logs...the signature for the same is enabled though...Is there any other porblem..Configuration is absolutely ok..Can anybody suggest...
In addition..traffic matching the default signatures is also not getting logged...Plz suggest....
01-24-2007 07:51 AM
Once you put the sensor inline, you must remember to add the interface pair to the virtual sensor. I would check this first. Which signature are you looking for?
01-24-2007 08:05 PM
I already have done the same when I put it in inline mode...
i was trying for icmp request and reply signatures...but it didn't work when i tested with a ping...In addition default signatures are also not getting fired..in fact nothing is shown in IPS logs...I wonder...
ANything suggestive??
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide