cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
249
Views
0
Helpful
1
Replies

installing a 4235 and 4215 IDS Sensor

ptaylor51
Level 1
Level 1

I am new to the IDS world and would like some help with installing my IDS Sensor 4235.

1. I would need to know, if i am behind a firewall and i want to monitor all my internal traffic coming in or on my internal network what do i need to configure.

2. And if i want to monitor my DMZ area with a 4215 in front of my router, what do i need to do exactly.

I will be using CiscoWorks VMS to manage and monitor my network, not navigator.

3. Were do i connect my control port of the Sensor, this is the one with the ip address, right. And do i pyhsically connect my sniffing port to my 6500 span port, and do i need to do anything special when i configure the span port on my switch.

thanks very much inadvance

1 Reply 1

nkhawaja
Cisco Employee
Cisco Employee

Hi,

1. Connect sniffing interface to a switch port and span all incoming traffic from firewall interface to that port. So that you will be monitoring all filtered traffic from firewall. If you want to monitor all internal traffic, you have to span the port/vlans accordingly.

2. Same as 1,

Control port of the sensor will be connected to the vlan with which you can have connectivity.. Yes phycially connect sniffing port to the span port. nothing special, you need to monitor traffic so span is good.

Thanks