µ¥ÀÌÅÍ ½ÃÆ®



Cisco Catalyst 6500 Series IDSM-2(Intrusion Detection System Services Module)


½Ã½ºÄÚ ÅëÇÕ ³×Æ®¿öÅ© º¸¾È ¼Ö·ç¼ÇÀ» »ç¿ëÇÏ¿© Á¶Á÷¿¡¼­´Â »ý»ê¼ºÀ» Çâ»ó½ÃÅ°°í ¿î¿µ ºñ¿ëÀ» Àý°¨ÇÒ ¼ö ÀÖ½À´Ï´Ù.

±×¸² 1. Cisco IDSM-2


Cisco IDSM-2´Â Cisco IPS(Intrusion Prevention System)ÀÇ ÀϺκÐÀ¸·Î, ´Ù¸¥ ±¸¼º¿ä¼Ò¿Í ÇÔ²² ÀÛµ¿ÇÏ¿© µ¥ÀÌÅÍ ÀÎÇÁ¶ó¸¦ È¿À²ÀûÀ¸·Î º¸È£ÇÕ´Ï´Ù. º¸¾ÈÀÇ À§ÇùÀÌ Á¡Á¡ ´õ º¹ÀâÇØÁü¿¡ µû¶ó ³ôÀº ¼öÁØÀÇ º¸È£¸¦ À¯ÁöÇϱâ À§Çؼ­´Â È¿À²ÀûÀÎ ³×Æ®¿öÅ© ħÀÔ º¸¾È ¼Ö·ç¼ÇÀ» ±¸ÇöÇÏ´Â °ÍÀÌ ÇʼöÀûÀÔ´Ï´Ù. ÀûÀýÇÑ º¸È£´Â ºñÁî´Ï½ºÀÇ ¿¬¼Ó¼ºÀ» º¸ÀåÇÏ°í ħÀÔÀ¸·Î ÀÎÇÑ ¸·´ëÇÑ ¿µÇâÀ» ÃÖ¼ÒÈ­ÇÕ´Ï´Ù.


Cisco IDS/IPS(Intrusion Detection System/Intrusion Prevention System)¿¡ ´ëÇÑ ÀÚ¼¼ÇÑ ³»¿ëÀº http://www.cisco.com/go/ids¸¦ ¹æ¹®ÇϽʽÿÀ. ½Ã½ºÄÚ ÅëÇÕ ³×Æ®¿öÅ© º¸¾È ¼Ö·ç¼ÇÀ» ÅëÇØ Á¶Á÷¿¡¼­´Â À§ÇùÀ¸·ÎºÎÅÍ ºñÁî´Ï½º ÀÚ»êÀ» º¸È£ÇÏ°í ħÀÔ Â÷´Ü ½Ã½ºÅÛÀ» º¸´Ù È¿À²ÀûÀ¸·Î ¿î¿µÇÒ ¼ö ÀÖ½À´Ï´Ù. ÀÌ ¼Ö·ç¼Ç Áß¿¡´Â ³Î¸® ¹èÄ¡µÈ Cisco Catalyst® ¼¨½Ã¿¡ »ç¿ëµÇ´Â Cisco IDS/IPS ¸ðµâÀÇ Â÷¼¼´ë ¸ðµâÀÎ IDSM-2°¡ ÀÖ½À´Ï´Ù. Àü¼¼°è ¼ö½Ê ¸¸ °³°¡ ¼³Ä¡µÇ¾î ÀÖ´Â Catalyst ¼¨½Ã´Â ¹æÈ­º®, °¡»ó »ç¼³¸Á(VPN) ¹× ħÀÔ Å½Áö/¹æÁö ½Ã½ºÅÛ(IDS/IPS) ¼­ºñ½º¿Í °°Àº Ãß°¡ÀûÀÎ ¼­ºñ½º¸¦ À§ÇÑ Áö´ÉÇü Ç÷§ÆûÀÔ´Ï´Ù. ÀÌ·¯ÇÑ Á¢±Ù ¹æ½ÄÀÇ Çʿ伺À» ÀνÄÇÑ ½Ã½ºÄÚ´Â ¾ÇÀÇÀûÀÎ °ø°ÝÀ¸·ÎºÎÅÍ °í°´ µ¥ÀÌÅÍ ÀÎÇÁ¶ó¸¦ ¾ÈÀüÇÏ°Ô º¸È£Çϱâ À§ÇÏ¿© ½Ã½ºÄÚÀÇ Â÷¼¼´ë ¸ðµâ IDSM-2¸¦ Ãâ½ÃÇß½À´Ï´Ù.


±â´É ¹× ÀÌÁ¡

Cisco IDSM-2´Â ´ÙÀ½°ú °°Àº ±â´É°ú ÀÌÁ¡À» Á¦°øÇÕ´Ï´Ù.

• ½Ã½ºÄÚ´Â VLAN ±â¹ÝÀÇ Á¢±Ù Á¦¾î ¸ñ·Ï(VACL) ĸó¸¦ ÅëÇØ µ¥ÀÌÅÍ ½ºÆ®¸²À» ºÐ¼® °¡´ÉÇÏ°Ô ÇÏ´Â IDS/IPS ¼Ö·ç¼ÇÀ» À¯ÀÏÇÏ°Ô °ø±ÞÇÏ´Â ¾÷üÀÔ´Ï´Ù.
• ÀζóÀÎ(IPS) ¸ðµå¿Í ¼öµ¿ ÀÛµ¿(IDS) ¸ðµå¸¦ µÑ ´Ù Áö¿øÇÕ´Ï´Ù.
• ¼öµ¿ ¸ðµå¿¡¼­ IDSM-2´Â VACL ĸó ¹× SPAN(Switch Port Analyzer)/RSPAN(Remote SPAN)À» ÅëÇØ ´Ù¾çÇÑ ¹æ½ÄÀ¸·Î ÆÐŶÀ» °Ë»çÇÕ´Ï´Ù.
• ¼öµ¿ ¸ðµå¿¡¼­´Â IDSM-2°¡ ½ºÀ§Ä¡ Àü¼Û °æ·Î¿¡ ÀÖÁö ¾ÊÀ¸¹Ç·Î ³×Æ®¿öÅ© ¼º´ÉÀÌ ÀúÇϵǰųª ´Ù¿îŸÀÓÀÌ ¹ß»ýÇÏÁö ¾Ê½À´Ï´Ù.
• ÀζóÀÎÀ¸·Î »ç¿ëÇÒ °æ¿ì IDSM-2ÀÇ ÀÌ»ó µ¿ÀÛÀ¸·Î ÀÎÇÑ ³×Æ®¿öÅ© ¿î¿µ¿¡ ¿µÇâÀ» ¹ÌÄ¡Áö ¾Êµµ·Ï ¼ÒÇÁÆ®¿þ¾î ¹æ½ÄÀÇ ¹ÙÀÌÆнº ±â´ÉÀ» Áö¿øÇÕ´Ï´Ù.
• PET(Prevention Enablement Technologies)¿Í °°Àº °í±Þ ¿À·ù ŽÁö ±â´ÉÀ» »ç¿ëÇÏ¿© ÆÐŶ ÀÛ¾÷ÀÇ ½Å·Úµµ¸¦ ±Ø´ëÈ­ÇÕ´Ï´Ù. PET´Â ¶ÇÇÑ »ç¿ëÀÚ Á¶Á¤ÀÌ °¡´ÉÇÑ Risk Rating ¹× Meta Event Generator¸¦ »ç¿ëÇÏ¿© ³»ºÎ ³×Æ®¿öÅ©¿¡ Àü´ÞµÇ´Â µ¥ÀÌÅÍÀÇ ½Å·Úµµ¸¦ ±Ø´ëÈ­ÇÕ´Ï´Ù.
• Cisco Catalyst 6500 ¶Ç´Â Catalyst 7600 ¼¨½Ã¿¡ 1 ·¢ À¯´Ö(RU) Å©±â·Î ÀåÂøµÇ¾î ½½·Ô ÇÑ °³¸¸À» Â÷ÁöÇÏ°Ô µÇ¹Ç·Î, ÃÖ´ë 8°³ÀÇ IDSM-2¸¦ µ¿½Ã¿¡ ¼³Ä¡ÇÏ¿© Æ®·¡ÇÈ °Ë»ç¿Í º¸È£¸¦ Á¦°øÇÒ ¼ö ÀÖ½À´Ï´Ù.
• IDSM-2 ÃÖ´ë 8°³ÀÇ ¸ðµâÀ» ÅëÇØ 4GbpsÀÇ IDS/IPS °Ë»ç¸¦ ÅëÇØ °í¼Ó ÆÐŶ °Ë»ç±â´ÉÀ» Á¦°øÇÏ°í ´õ¿í ´Ù¾çÇÑ Á¾·ùÀÇ ³×Æ®¿öÅ©¿Í Æ®·¡ÇÈÀ» º¸È£ ÇÕ´Ï´Ù.
• °í°´ÀÌ SPAN/RSPAN ¹× VACL ĸó¸¦ ºñ·ÔÇÑ ¿©·¯ ĸó ±â¼úÀ» »ç¿ëÇÏ¿© ´Ù¾çÇÑ ³×Æ®¿öÅ© ¼¼±×¸ÕÆ®¿Í Æ®·¡ÇÈÀ» ¸ð´ÏÅ͸µÇÏ°í ÀûÀýÇÑ Á¶Ä¡¸¦ ÃëÇÏ¿© À§ÇùÀ» ¿ÏÈ­ÇÒ ¼ö ÀÖ½À´Ï´Ù.
• Cisco IDS/IPS ³×Æ®¿öÅ© ¾îÇöóÀÌ¾ð½º¿Í µ¿ÀÏÇÑ IPS Äڵ带 »ç¿ëÇϹǷÎ, »ç¿ëÀÚ°¡ ´ÜÀÏ °ü¸® ±â¼úÀ» Ç¥ÁØÈ­ÇÏ¿© ´õ ½±°í ºü¸£°Ô ¼³Ä¡, ±³À°,¿î¿µ ¹× Áö¿øÀ» ¼öÇàÇÒ ¼ö ÀÖÀ¸¸ç Cisco IDS/IPSÀÇ ±¤¹üÀ§ÇÑ °ø°Ý ÀÎ½Ä ¹× ¼­¸í ¹üÀ§¸¦ È°¿ëÇÒ ¼ö ÀÖ½À´Ï´Ù.
• Trend Micro¸¦ ÅëÇÑ ½Ã±×´ÏÃÄ ÅëÇÕ - ½Ã½ºÄÚ¿Í Trend MicroÀÇ Çù·ÂÀ» ÅëÇØ ½Ã½ºÄÚ °íÀ¯ÀÇ ¼­¸í °³¹ßÀ» ÃËÁøÇÏ°í °¡Àå ¿Ïº®ÇÑ ½Ã±×´ÏÃÄ ¾÷µ¥ÀÌÆ®¸¦ Á¦°øÇÔÀ¸·Î½á °ø°ÝÀ» Àû½Ã¿¡ ŽÁöÇÏ°í ¹æÁöÇÕ´Ï´Ù.
• ÅÚ³Ý, º¸¾È CLI, IDM ·ÎÄà ±¸¼º ºê¶ó¿ìÀú, SecMon ¸ð´ÏÅ͸µ ¾ÖÇø®ÄÉÀ̼Ç, CTR(Cisco Threat Response) ¹× SNMP¸¦ ÅëÇØ À¯¿¬ÇÑ °ü¸® ¿É¼ÇÀÌ Á¦°øµÉ »Ó ¾Æ´Ï¶ó, VMS¿Í Ÿ»ç °ü¸® ¾ÖÇø®ÄÉÀ̼ÇÀ» ÅëÇؼ­µµ Á¦°øµË´Ï´Ù.
• Catalyst 65xx ¹× 76xx ¼¨½Ã»ó¿¡¼­ ´Ù¾çÇÑ ¼öÆÛ¹ÙÀÌÀú¸¦ ÅëÇØ Catalyst Hybrid Supervisor OS¿Í Native IOS Supervisor¸¦ Áö¿øÇϹǷΠ±¤¹üÀ§ÇÑ ¼³Ä¡ ±â¹Ý ³×Æ®¿öÅ© »ó¿¡¼­ ºÐ¹è°¡ °¡´ÉÇÕ´Ï´Ù.
• MPLS µðÄڵ带 ºñ·ÔÇÑ ´ëºÎºÐÀÇ TCP/IP ¹× ARP ÇÁ·ÎÅäÄÝÀ» Áö¿øÇÕ´Ï´Ù.


±â¼ú »ç¾ç

Cisco IDSM-2 ºÎÇ° ¹øÈ£

• Catalyst ½Ã½ºÅÛÀÇ ÀϺηΠ±¸ÀÔÇÏ´Â °æ¿ì WS-SVC-IDS2-BUN-K9
•"¿¹ºñ¿ë"À¸·Î º°µµ ±¸ÀÔÇÏ´Â °æ¿ì WS-SVC-IDS2BUNK9=Cisco IDSM-2 ¼­ºñ½º ºÎÇ° ¹øÈ£
• CON-xxxx-WS-IDSM2-K9

ºÎÇ° ¹øÈ£¿¡¼­"xxxx"ÀÇ ¼­ºñ½º Å°´Â ´ÙÀ½°ú °°½À´Ï´Ù.

• SNT = 8x5x ´ÙÀ½ ¿µ¾÷ÀÏ • SNTE = 8x5x4 ½Ã°£ ¼­ºñ½º
• SNTP = 24x7x4 ½Ã°£ ¼­ºñ½º • OS = 8x5x ´ÙÀ½ ¿µ¾÷ÀÏ
• OSE = 8x5x4 ½Ã°£ ¼­ºñ½º ¿Â»çÀÌÆ® • SP = 24x7x4 ½Ã°£ ¼­ºñ½º ¿Â»çÀÌÆ®


Æû ÆÑÅÍ
1 ·¢ À¯´Ö ¸ðµâÀÌ Cisco Catalyst 6500/7600 ¼¨½Ã¿¡¼­ ÇÑ °³ÀÇ ½½·ÔÀ» »ç¿ëÇÕ´Ï´Ù.


LED ¹× ½ºÀ§Ä¡
´ÜÀÏ Ç¥½Ã±â(LED)

• OFF-Àü¿ø ¾øÀ½
• ³ë¶û-ºÎÆà Áß/´ë±â
• ³ì»ö-¾ÖÇø®ÄÉÀÌ¼Ç ½ÇÇà Áß
• Àû»ö-¸ðµâ Àå¾Ö ŽÁö
¼¨½Ã¿¡¼­ ¸ðµâÀ» Á¦°ÅÇϱâ Àü¿¡ ½ºÀ§Ä¡¸¦ ²ô½Ê½Ã¿À.


ÇÖ½º¿Ò ¿ä±¸»çÇ×
• Á¦°ÅÇϱâ Àü¿¡ ¸ðµâÀ» ²¨¾ß ÇÕ´Ï´Ù.
• ¸ðµâÀ» »ðÀÔ/Á¦°ÅÇÏ´õ¶óµµ Cisco Catalyst ½ºÀ§Ä¡¿¡´Â ¿µÇâÀ» ¹ÌÄ¡Áö ¾Ê½À´Ï´Ù.


ÇÁ·Î¼¼¼­
¸ÞÀκ¸µå»óÀÇ ÀÌÁß Pentium P3 1.13 GHz(°¡¼Ó±â»ó¿¡ 232 MHz IXP 32ºñÆ® StrongARM Á¤Ã¥ ÇÁ·Î¼¼¼­°¡ ÀÖÀ½)


¸Þ¸ð¸® ¹× ÇÏµå µå¶óÀ̺ê
• 20 GB (¸ðµÎ »ç¿ëµÇÁö ¾ÊÀ½)
• 2 GB RAM
• IDSv5.0ÀÇ °æ¿ì 32 MB À̺¥Æ® ½ºÅ丮Áö
• 64 MB Ç÷¡½Ã ¸Þ¸ð¸®


¿î¿µ üÁ¦
GNU Linux Ä¿³Î ¹öÀü 2.4.26


¼¨½Ã ´ç ¸ðµâÀÇ ÃÖ´ë ¼ö

• ¼¨½Ã ´ç 8°³
• ½½·Ô Á¦ÇÑ ¾øÀ½


Æ®·¡ÇÈ Ä¸Ã³ ¹æ½Ä(¼öµ¿ ¸ðµå)
• VACL ĸó
• SPAN
• RSPAN(2)
• ERSPAN(4) (Supervisor 720 Àü¿ë)


ÃÖ¼Ò ÄÚµå ¼öÁ¤
• ¸±¸®½º 4.x, S47
• ÇöÀç ¸±¸®½º: 5.x S14x


Catalyst ¼öÆÛ¹ÙÀÌÀú ¼ÒÇÁÆ®¿þ¾î ¿ä±¸»çÇ×

• Catalyst OS 7.6(1) (ÃÖ¼Ò)
• ±âº» Cisco IOS Software ¸±¸®½º 12.1(19)E (ÃÖ¼Ò)


¼öÆÛ¹ÙÀÌÀú ÀζóÀÎ ÀÛµ¿ ½Ã ±âº» IOS ºê·£Ä¡ ÀζóÀÎ ÀÛµ¿ ½Ã Catalyst OS ºê·£Ä¡
Sup 720(¸ðµç ¹öÀü) TBD 8.4(1)
Sup 1a(PFC ¾øÀ½, PFC Æ÷ÇÔ, MSFC20 Æ÷ÇÔ) TBD 8.4(1)
Sup 2(PFC ¾øÀ½, PFC Æ÷ÇÔ ¹× MSFC2 Æ÷ÇÔ) TBD 8.4(1)
¼öÆÛ¹ÙÀÌÀú ¼öµ¿ ¸ðµå¿¡¼­ ±âº» IOS ºê·£Ä¡ ¼öµ¿ ¸ðµå¿¡¼­ Catalyst OS ºê·£Ä¡
Sup 720(MSFC3 ÀÖÀ½) (¸ðµç ¹öÀü) 12.2(18)SXD1 8.2(1), 8.3(1), 8.4(1)
Sup 720(MSFC3 ¾øÀ½) ÇØ´ç ¾øÀ½ ÇØ´ç ¾øÀ½
Sup 32 "W" ÇØ´ç ¾øÀ½ 8.4(1)
Sup 2(MSFC2 ÀÖÀ½) 12.1(13)E, 12.1(19)E, 12.2(14)SX, 7.5(1), 7.6(1), 8.1(1), 8.2(1), 8.3(1), 8.4(1)
12.2(18)SXD1
7.5(1), 7.6(1), 8.1(1), 8.2(1), 8.3(1), 8.4(1)
Sup 2(MSFC2 ¾øÀ½) ÇØ´ç ¾øÀ½ 7.5(1), 7.6(1), 8.1(1), 8.2(1), 8.3(1), 8.4(1)
Sup 2(PFC2 ¾øÀ½) ÇØ´ç ¾øÀ½ ÇØ´ç ¾øÀ½
Sup 1a(MSFC2 ÀÖÀ½) 12.1(19)E1, 12.1(20) 7.5(1), 7.6(1), 8.1(1), 8.2(1),8.3(1), 8.4(1); À¯È¿
MSFC2 ºê·£Ä¡ 12.1(13)E, 12.1(19)E, 12.1(20)
Sup 1a(MSFC2 ¾øÀ½) ÇØ´ç ¾øÀ½ 7.5(1), 7.6(1), 8.1(1), 8.2(1), 8.3(1), 8.4(1)
Sup 1a(PFC ¾øÀ½) ÇØ´ç ¾øÀ½ ÇØ´ç ¾øÀ½
Sup 1a(MSFC1 ÀÖÀ½) Áö¿ø ¾ÊÀ½ 7.5(1), 7.6(1), 8.1(1), 8.2(1),8.3(1), 8.4(1); À¯È¿
MSFC1 ºê·£Ä¡ 12.1(13)E, 12.1(19)E, 12.1(20)
Sup 1a(MSFC1 ¾øÀ½) ÇØ´ç ¾øÀ½ 7.5(1), 7.6(1), 8.1(1), 8.2(1), 8.3(1), 8.4(1)


»óÈ£¿î¿ë¼º
7.6(1), 8.1(1) Catalyst OS ¶Ç´Â 12.1(19)E¸¦ »ç¿ëÇÏ´Â ´Ù¸¥ ¸ðµç ¼­ºñ½º ¸ðµâ°ú ȣȯµË´Ï´Ù(VPNSM Á¦¿Ü). VPNSM°ú ÇÔ²² ÀÛµ¿ÇÏ·Á¸é, Cat 6500ÀÌ ÀÖ´Â 12.2(17d)SXBÀ̳ª Cat 7600ÀÌ ÀÖ´Â 12.2(18)SXD1À» »ç¿ëÇϽʽÿÀ. VPNSM¿¡ ´ëÇؼ­´Â ´Ù¸¥ Á¦ÇÑÀÌ Àû¿ëµÉ ¼ö ÀÖ½À´Ï´Ù.


Ç¥ 2. WAN »óÈ£¿î¿ë¼º Áö¿ø

WAN ȣȯ¼º Áö¿ø Catalyst 6500 Catalyst 7600
IDSM-2 Áö¿ø 8.4(1)
IDSM-2(FlexWAN2 Æ÷ÇÔ)* Áö¿øÇÏÁö ¾ÊÀ½ Áö¿ø
* FlexWAN1Àº Catalyst 6500 ¶Ç´Â Catalyst 7600¿¡¼­ Áö¿øµÇÁö ¾Ê½À´Ï´Ù.


¼öµ¿ ¸ðµå ¹× ÀζóÀÎ ¸ðµåÀÇ Â÷ÀÌÁ¡

Ç¥ 3. ¼öµ¿ ¸ðµå ¹× ÀζóÀÎ ¸ðµåÀÇ Â÷ÀÌÁ¡

  IDSM-2 ¼öµ¿ ¸ðµå(4.x) DSM-2 ¼öµ¿ ¸ðµå(5.x) IDSM-2 ÀζóÀÎ ¸ðµå(5.x)
Cat 6500 Áö¿ø
Áö¿ø
Áö¿ø
Áö¿ø
Cat 7600 Áö¿ø
Áö¿ø
Áö¿ø(IOS 12.2(17)SXD1 Àü¿ë)
Áö¿øÇÏÁö ¾ÊÀ½
Cat OS Áö¿ø
Áö¿ø (´Ù¾ç)
Áö¿ø (´Ù¾ç)
Áö¿ø (8.4(1) Àü¿ë)
Cat IOS Áö¿ø
Áö¿ø
Áö¿ø
Áö¿øÇÏÁö ¾ÊÀ½
¸ð´ÏÅ͸µµÇ´Â VLAN
¹«Á¦ÇÑ
¹«Á¦ÇÑ
´ÜÀÏ ½Ö
¼º´É(FCSÀÇ °æ¿ì)
600 Mbps ¾ç¹æÇâ
500 Mbps
500 Mbps
Áö¿¬ ½Ã°£
¾øÀ½, ÇØ´ç ¾øÀ½
¾øÀ½, ÇØ´ç ¾øÀ½
~1 Ms/ÆÐŶ ÀÌÇÏ
µ¿ÀÛ
TCP Àç¼³Á¤, ȸÇÇ, IP ·Î±×,
Æ®¸®°Å ÆÐŶ ĸó`
TCP Àç¼³Á¤, ȸÇÇ, IP ·Î±×,
Æ®¸®°Å ÆÐŶ ĸó
ÆÐŶ Æó±â, TCP Àç¼³Á¤, ȸÇÇ,
IP ·Î±×, Æ®¸®°Å ÆÐŶ ĸó
ÀåÄ¡ Àå¾ÖÀÇ ¿µÇâ
ÀåÄ¡ Àå¾Ö°¡ Æ®·¡ÇÈ¿¡ ¿µÇâÀ»
¹ÌÄ¡Áö ¾ÊÀ½
ÀåÄ¡ Àå¾Ö°¡ Æ®·¡ÇÈ¿¡ ¿µÇâÀ»
¹ÌÄ¡Áö ¾ÊÀ½
ÀåÄ¡ Àå¾Ö°¡ Æ®·¡ÇÈ¿¡ ¿µÇâÀ»
¹ÌÄ¥ ¼ö ÀÖÀ½, ¼ÒÇÁÆ®¿þ¾î ¹ÙÀÌÆнº,SNMP°¡ ¿µÇâÀ» °¨¼Ò½ÃÅ´
¸ðµç °ø°ÝÀ» Áß´ÜÇÒ ¼ö ÀÖÀ½
Áö¿øÇÏÁö ¾ÊÀ½ (´ÜÀÏ ÆÐŶ °ø°Ý¸¸ÀÌ ¼º°øÇÒ ¼ö ÀÖÀ½) Áö¿øÇÏÁö ¾ÊÀ½(´ÜÀÏ ÆÐŶ °ø°Ý¸¸ÀÌ ¼º°øÇÒ ¼ö ÀÖÀ½) Áö¿ø(ŽÁöµÈ ¸ðµç °ø°Ý Æ®·¡ÇÈÀ»
ºÐ¼®ÇÏ°í Æó±âÇÒ ¼ö ÀÖÀ½)
SecMon/IDSMC Áö¿ø VMS 2.3 VMS 2.3 VMS 2.3


Âü°í: °í°´ÀÌ ÀûÀýÇÑ ¹öÀü°ú ¼öÆÛ¹ÙÀÌÀú¸¦ »ç¿ëÇÏ¿© ¼öµ¿ ¸ðµå¿¡¼­ IPSv5.0°ú ÇÔ²² IDSM-2¸¦ ½ÇÇàÇÒ ¼ö ÀÖÁö¸¸, ÀζóÀÎ ÀÛµ¿À» À§ÇØ À̹ø¿¡´Â Cat OS 8.4(1)¸¸ Áö¿øµË´Ï´Ù.


¼º´É ±âÁØ(¼öµ¿ ¸ðµå)
• ÃÊ´ç 5000°³ÀÇ »õ·Î¿î TCP ¿¬°á°ú 50,000°³ÀÇ µ¿½Ã ¿¬°á¿¡¼­ 450¹ÙÀÌÆ® ÆÐŶÀÇ °æ¿ì 500 Mbps
• ÃÖ´ë 500,000°³ÀÇ µ¿½Ã ¿¬°á Áö¿ø
• 100% °æº¸ ¼Óµµ
• Cisco Catalyst ¼¨½Ã¿¡ VLANÀ̳ª ÀåÄ¡¸¦ Ãß°¡ÇÏ´õ¶óµµ Catalyst ¼º´É¿¡´Â ¿µÇâÀ» ¹ÌÄ¡Áö ¾ÊÀ½
• Æк긯 È°¼ºÈ­µÊ
• ¿À¹ö »ùÇøµ °æº¸°¡"993 Bandwidth Exceeded"°æº¸¸¦ ¹ß»ý
• ¹«Á¦ÇÑ VLAN Áö¿ø


¼º´É ±âÁØ(ÀζóÀÎ ¸ðµå)
• ÃÊ´ç 5000°³ÀÇ »õ·Î¿î TCP ¿¬°á°ú 50,000°³ÀÇ µ¿½Ã ¿¬°á¿¡¼­ 450¹ÙÀÌÆ® ÆÐŶÀ» »ç¿ëÇÏ¿© 500 Mbps
• ÃÖ´ë 500,000°³ÀÇ µ¿½Ã ¿¬°á Áö¿ø
• 100% °æº¸ ¼Óµµ
• 1°³ÀÇ VLAN ½Ö


VLANSÀÇ ÃÖ´ë ¼ö(802.1q űë)
• ¼öµ¿ ¸ðµå¿¡¼­´Â ¹«Á¦ÇÑ
• IDSM-2 ÀζóÀÎÀÇ °æ¿ì 1°³ÀÇ VLAN ½Ö


Àå¾Ö º¹±¸ º¸È£
• ¼öµ¿ ¸ðµå: IDSM-2´Â Àå¾Ö ¹ß»ý ½Ã Cisco Catalyst ¼¨½Ã¿¡ ¿µÇâÀ» ¹ÌÄ¡Áö ¾Ê´Â ¼öµ¿ ¹æ½ÄÀÔ´Ï´Ù.
• ÀζóÀÎ ¸ðµå: ¼ÒÇÁÆ®¿þ¾î ¹ÙÀÌÆнº ±â´ÉÀ» »ç¿ëÇÏ¿© IDSM-2¿¡ Àå¾Ö°¡ ¹ß»ýÇÏ´Â °ÍÀ» ¸·À» ¼ö ÀÖ½À´Ï´Ù. SNMP¸¦ ÅëÇØ À¯´Ö »óŸ¦ ¸ð´ÏÅ͸µ ÇÒ ¼ö ÀÖ½À´Ï´Ù.


°ü¸®
• CLI-ÅÚ³Ý ¶Ç´Â SSHv3.0À» ÅëÇØ CLI¸¦ ·ÎÄÃÀ̳ª ¿ø°ÝÀ¸·Î »ç¿ëÇÏ¿© IDSM-2¸¦ ±¸¼ºÇÒ ¼ö ÀÖ½À´Ï´Ù.
• IDM-·ÎÄà »ç¿ëÀ» À§ÇÑ ±¸¼º °ü¸®ÀÚÀÔ´Ï´Ù. IDMÀº IDSM-2¿¡¼­ ´Ù¿î·ÎµåµÇ´Â ¾ÖÇø´À̸ç PC¿¡¼­ ½ÇÇàµË´Ï´Ù. ÀÌ ¾ÖÇø®ÄÉÀ̼ÇÀº TLS v1.0 ¶Ç´Â SSL v1.5/2.0À» ÅëÇØ º¸È£µË´Ï´Ù.
• IEV-IEV´Â ÁߴܵǾúÀ¸¸ç ´õ ÀÌ»ó IDSM-2¿¡¼­ Áö¿øµÇÁö ¾Ê½À´Ï´Ù.
• CTR-CTRÀº ÁߴܵǾúÀ¸¸ç ´õ ÀÌ»ó IDSM-2¿¡ »ç¿ëÇÒ ¼ö ¾ø½À´Ï´Ù.
• SNMP-IDSv5.0Àº IDSM-2¿ë Cisco CIDS MIB¸¦ ºñ·ÔÇÑ SNMPv2c¸¦ Áö¿øÇϸç Gets¿Í TrapsÀº Á¦°øÇÏÁö¸¸ Sets´Â Á¦°øÇÏÁö ¾Ê½À´Ï´Ù.
Áï, SNMP¸¦ ÅëÇØ IDSM-2¸¦ ±¸¼ºÇÒ ¼ö ¾ø½À´Ï´Ù. Trap¿¡¼­ °æº¸¸¦ Àü¼ÛÇÕ´Ï´Ù. IDSM-2»ó¿¡ SNMP µ¥¸óÀ» ÄÑ°í Ä¿¹Â´ÏƼ¸¦ ±¸¼ºÇÑ ½Ã±×´ÏÃĸ¦ ±¸¼º¿© °æº¸¿Í ÇÔ²² SNMP TrapsÀ» »ý¼ºÇÕ´Ï´Ù. ¼¾¼­°¡ »ý¼ºÇÏ´Â SNMP TrapsÀ» ¼ö½ÅÇϵµ·Ï SNMP °ü¸® ½ºÅ×À̼ÇÀ» ±¸¼ºÇØ¾ß ÇÕ´Ï´Ù. SNMP °ü¸® ½ºÅ×À̼ÇÀº °æº¸¸¦ ¼ö½ÅÇÒ »Ó¸¸ ¾Æ´Ï¶ó ´Ù¸¥ ¿©·¯ Åë°è¿Í »óÅÂ(CPU »ç¿ë·®, ¸Þ¸ð¸® »ç¿ë·® µî)¸¦ ¼¾¼­¿¡ ÁúÀÇÇÒ ¼ö ÀÖ½À´Ï´Ù.
• VMS 2.3Àº Cisco VPN, ¹æÈ­º® ¹× IDS ÀåÄ¡¿Í CSA HIDS¸¦ °ü¸®ÇÏ´Â ¾ÖÇø®ÄÉÀÌ¼Ç ¹øµéÀÔ´Ï´Ù. ÀÌ ¹øµéÀº VMS Basic, VMS-R(Á¦ÇÑ) ¹× VMS-UR(Á¦ÇÑ ¾øÀ½)À» ºñ·ÔÇÑ ¼¼ °¡Áö ÇüÅ·ΠÁ¦°øµË´Ï´Ù. VMS BasicÀº ÃÖ´ë 5´ëÀÇ ÀåÄ¡¸¦ °ü¸®ÇÏ¸ç ¹«·á·Î Æ÷ÇԵ˴ϴÙ. VMS-RÀº ÃÖ´ë 20´ëÀÇ ÀåÄ¡¸¦ °ü¸®Çϸç, VMS-URÀº ÀåÄ¡¸¦ ¹«Á¦ÇÑÀ¸·Î °ü¸®ÇÕ´Ï´Ù. VMS 2.3¿¡´Â Cisco IOS IPS °¡´É ¶ó¿ìÅ͸¦ ºñ·ÔÇÑ IDSv3.x ¹× IDSv4.x ÀåÄ¡¸¦ ¸ð´ÏÅ͸µÇÏ°í °ü¸®ÇÒ ¼ö ÀÖ´Â SecMon 2.0 ¹× IDSMC 2.0ÀÌ Æ÷ÇԵ˴ϴÙ. IDSv5.0 ÀåÄ¡ ¸ð´ÏÅ͸µ ¹× °ü¸®¸¦ À§ÇØ SecMon 2.1 ¹× IDSMC 2.1ÀÌ ÇâÈÄ Ãâ½ÃµÉ ¿¹Á¤ÀÔ´Ï´Ù.
• IDSMC 2.0-VMSÀÇ ÇÑ ±¸¼º¿ä¼Ò·Î, IDSMCÀÇ »õ·Î¿î ¹öÀüÀÎ IDSMC 2.0Àº »ç¶÷ÀÇ °³ÀÔÀÌ ¾øÀ̵µ ¼­¸íÀ» ¼¾¼­¿¡ ÀÚµ¿À¸·Î ¾÷µ¥ÀÌÆ®ÇÒ ¼ö ÀÖ½À´Ï´Ù. IDSMC´Â ¿¹Á¤µÈ Áֱ⸶´Ù Cisco CCO »çÀÌÆ®¸¦ °Ë»çÇÏ¿© ½Ã±×´ÏÃÄ ¾÷µ¥ÀÌÆ®°¡ ÀÖ´Â °æ¿ì ÀÌ ¾÷µ¥ÀÌÆ®¸¦ IDSMC Ç÷§Æû¿¡ ´Ù¿î·Îµå ÇÑ ÈÄ ÇØ´ç ¾îÇöóÀ̾𽺷ΠÀÚµ¿À¸·Î Àü´ÞÇÕ´Ï´Ù.
• SecMon 2.0-IDSv5.0Àº IDSv4.0 Çü½ÄÀ¸·Î ¸Þ½ÃÁö¸¦ Àü´ÞÇϱ⠶§¹®¿¡ SecMon 2.0¿¡¼­ ÀÌ ¸Þ½ÃÁö¸¦ ½Äº°ÇÒ ¼ö ÀÖ½À´Ï´Ù.
• Third Party Managers¸¦ »ç¿ëÇÏ¿© IDSM-2¸¦ ¸ð´ÏÅ͸µÇÒ ¼ö ÀÖ½À´Ï´Ù. ´Ü, À̹ø¿¡´Â ±¸¼ºÀ» À§Çؼ­´Â »ç¿ëÇÒ ¼ö ¾ø½À´Ï´Ù. ÀÌ Å¸»ç °ü¸®ÀÚSDEE(Secure Data Event Exchange) ÇÁ·ÎÅäÄÝÀ» »ç¿ëÇÏ¿© IDSM-2¿¡¼­ À̺¥Æ®¿Í °æº¸¸¦ ¸ð´ÏÅ͸µÇÏ°í °Ë»çÇÕ´Ï´Ù. IDSM-2 ¸ð´ÏÅ͸µÀ» Áö¿øÇÏ´Â °ø±Þ¾÷ü·Î´Â Protego, NetForensics, Tivoli Risk Manager, Arcsight, Intellitactics, Arbor, Solsoft µîÀÌ ÀÖ½À´Ï´Ù.

¹°¸®Àû Ä¡¼ö
• ³ôÀÌ: 3.0 cm (1.2 ÀÎÄ¡)
• °¡·Î: 35.6 cm (14.4 ÀÎÄ¡)
• ¼¼·Î: 40.6 cm (16 ÀÎÄ¡)
• Áß·®: 2.27 kg (5 ÆÄ¿îµå)

Àü¿ø
• ¾ÚÇÁ: 2.5
• ¿ÍÆ®: 105
• ¿­ ¼Õ½Ç: 450 BTU

µ¿ÀÛ È¯°æ
• µ¿ÀÛ ¿Âµµ: 0 ~ 40¡£C (32 ~ 104.5¨¬F)
• ºñµ¿ÀÛ ¿Âµµ: -40 ~ 70¡£C (-40 ~ 158¨¬F)
• µ¿ÀÛ »ó´ë ½Àµµ: 10 ~ 90%(ºñÀÀÃà)
• ºñµ¿ÀÛ »ó´ë ½Àµµ: 5 ~ 95%(ºñÀÀÃà)
• µ¿ÀÛ ¹× ºñµ¿ÀÛ °íµµ: ÇØ¹ß 3050m (10,000 ÇÇÆ®)


Á¤ºÎ ½ÂÀÎ

ÀüÀÚÆÄ ¹æÃâ
FCC Part 15 (CFR 47) Class A, ICES-003 Class A, EN55022 Class A, CISPR22 Class A, AS/NZS 3548 Class A, VCCI Class A with UTP cables, EN55022 Class B, CISPR22 Class B, AS/NZS 3548 Class B, VCCI Class B with FTP cables


¾ÈÀü¼º
UL 1950, CSA 22.2 No. 950, EN 60950, IEC 60950, TS 001, AS/NZS 3260À» ÁؼöÇÏ´Â CE marking


ÀÎÁõ
• NEBS Level 3 ´ë±â Áß(Catalyst 7600ÀÇ °æ¿ì)
• Common Criteria Level 2 ÀÎÁõ ȹµæ


¼öÃâ ±ÔÁ¦
Cisco IDSM-2´Â"°­·ÂÇÑ ¾Ïȣȭ"Á¦Ç°À¸·Î ºÐ·ùµÇ¸ç ¼öÃâÀÌ ±ÔÁ¦µË´Ï´Ù. ÀÚ¼¼ÇÑ ³»¿ëÀº http://www.cisco.com/wwl/export/crypto/tool/À» ÂüÁ¶ÇϽʽÿÀ.


<¾÷µ¥ÀÌÆ®: 2005³â 6¿ù 16ÀÏ>