cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
481
Views
0
Helpful
1
Replies

PIX IDS "large Ping"

don.reeves
Level 1
Level 1

Is it possible to allow large ping replies through the PIX IDS-attack signiture without completely turning the IDS off?

1 Accepted Solution

Accepted Solutions

ywadhavk
Cisco Employee
Cisco Employee

Hi,

Use the "ip audit signature" command to disable this signature

ip audit signature :

Specify which messages to display, attach a global policy to a signature, and disable or exclude a signature from auditing.

I think the signature is 2151 : large ICMP traffic

Hope this helps,

yatin

View solution in original post

1 Reply 1

ywadhavk
Cisco Employee
Cisco Employee

Hi,

Use the "ip audit signature" command to disable this signature

ip audit signature :

Specify which messages to display, attach a global policy to a signature, and disable or exclude a signature from auditing.

I think the signature is 2151 : large ICMP traffic

Hope this helps,

yatin

Review Cisco Networking for a $25 gift card