Table Of Contents
A - B - C - D - E - F - G - H - I - L - M - N - O - P - R - S - T - U - V - X -
Index
A
accelerator cards
See XL cards
access control list
See ACL
accessing IPS software 10-1
accessories
four-post racks
installing appliances in racks 4-20
installing cable-management arms 4-21
installing slide assemblies 4-18
rack-kit contents 4-18
routing cables 4-25
tools 4-18
IDS-4210
package contents 2-7
IDS-4235
package contents 4-9
IDS-4250
package contents 4-9
two-post racks
center-mount installations 4-28
flush-mount installations 4-29
marking racks 4-28
rack kit contents 4-27
tools 4-27
actions
ACL changes 1-3
IP logs 1-3
multiple packet drop 1-3
TCP reset
described 1-2
AIP-SSM
described 1-11
indicators 6-2
installing 6-3
memory specifications 6-1
models 1-11
removing 6-5
requirements 6-2
show module 1 command 6-4
specifications 6-1
time sources 1-15
verifying status 6-4
appliances
ACLs 1-3
described 1-8
four-post racks
installing appliances in racks 4-20
installing cable-management arms 4-21
routing cables 4-25
hardware
dual serial communication cables 4-7
spare hard-disk drives 4-5
terminal settings 4-7
IDS-4215
rack mounting 3-6
surface mounting 3-5
IDS-4235
front panel 4-2
indicators 4-3
IDS-4250
front panel 4-2
indicators 4-3
installing
XL cards 4-13
managers 1-8
models 1-8
restrictions 1-9
setting up a terminal server 1-9
SPAN 1-8
TCP reset 1-2
terminal server 1-9
time sources 1-14
two-post racks
marking racks 4-28
rack kit contents 4-27
tools 4-27
XL cards
fiber ports 4-14
ASA
described 1-11
attack responses
TCP reset 1-2
B
BIOS
IDS-4235
upgrading 4-5
IDS-4250
upgrading 4-5
bypass mode
function 1-3
C
cable pinouts
console port 1-22
RJ-45 1-22
RJ-45 to DB-25 1-23
RJ-45 to DB-9 1-23
Catalyst software
IDSM-2
enabling full memory tests 7-12
resetting 7-13
Cisco.com
accessing software 10-1
cryptographic access 10-6
downloading software 10-1
downloading software updates 10-6
software downloads 10-1
Cisco.com account 10-6
Cisco IOS software
IDSM-2
enabling full memory tests 7-13
resetting 7-14
Cisco Security Center
described 10-12
URL 10-12
Cisco Services for IPS
service contract 10-7
supported products 10-7
clear events command 1-16
command and control
Ethernet 1-2
commands
clear events 1-16
copy license-key 10-9
setup 9-2
show module 1 6-4
console port pinouts 1-22
copy license-key command 10-9
correcting time on the sensor 1-16
cryptographic access to Cisco.com 10-6
D
downloading
Cisco software 10-1
E
electrical safety guidelines 1-18
enabling
full memory tests
Catalyst software 7-12
Cisco IOS software 7-13
Encryption Software Export Distribution Authorization 10-2
ESD environment
working in 1-19
Event Store
clearing events 1-16
F
files
Cisco IPS (list) 10-1
G
guidelines
electrical safety 1-18
power supplies 1-19
rack configuration 1-18
sites 1-17
H
hardware
four-post racks 4-17
power supply 4-10
SCSI hard-disk drives 4-15
spare hard-disk drives 4-5
two-post racks 4-27
I
IDS-4210
accessories 2-7
bezel
described 2-7
installing 2-7
removing 2-7
center mount brackets
installing 2-8
tools 2-8
front mount brackets
installing 2-9
tools 2-9
front panel (figure) 2-2
indicators 2-2
installing 2-5
IDS-4215
4FE card
installing 3-22
removing 3-20
accessories 3-4
back panel
figure 3-2
indicators 3-2
BIOS upgrade 3-9
chassis cover
removing 3-11
replacing 3-13
compact flash device
removing 3-17
replacing 3-18
features 3-2
front panel
figure 3-2
indicators 3-2
hard-disk drive
removing 3-15
replacing 3-16
installing 3-7
rack mounting 3-6
ROMMON upgrade 3-9
specifications 3-3
surface mounting 3-5
upgrading
BIOS 3-9
ROMMON 3-9
IDS-4235
accessories 4-9
back panel (figure) 4-4
bezel
described 4-10
installing 4-10
removing 4-10
described 4-1
front panel (figure) 4-2
indicators 4-2
installing
power supply 4-10
procedure 4-7
SCSI hard-disk drives 4-17
specifications 4-5
upgrading BIOS 4-5
IDS-4250
accessories 4-9
back panel (figure) 4-4
bezel
described 4-10
installing 4-10
removing 4-10
front panel (figure) 4-2
indicators 4-2
installing 4-7
power supply 4-10
SCSI hard-disk drives 4-17
SX card 4-12
two hard-disk drives 4-15
XL cards 4-13
SCSI hard-disk drives
installing 4-17
removing 4-16
specifications 4-5
upgrading
BIOS 4-5
IDS-4250-XL
TCP reset interface 4-6
IDS appliances
four-post racks
installing slide assemblies 4-18
rack kit contents 4-18
tools 4-18
hardware
dual serial communication cables 2-5
terminal settings 2-5
IDS-4210
indicators 2-2
two-post racks
center-mount installations 4-28
flush-mount installations 4-29
unsupported models 1-7
IDSM-2
described 1-12
enabling full memory tests
Catalyst software 7-12
Cisco IOS software 7-13
front panel 7-3
hot swapping 7-4, 7-8
installing
procedure 7-5
required tools 7-4
verifying 7-8
PFC 7-5
powering down(Catalyst OS) 7-15
powering down (Cisco IOS) 7-15
powering up (Catalyst OS) 7-15
powering up (Cisco IOS) 7-15
removing 7-10
requirements 7-2
resetting 7-13
Catalyst software 7-13
Cisco IOS software 7-14
shutdown
button 7-3
command 7-3
described 7-10
slot assignments 7-5
SPAN 1-12
specifications 7-1
status indicator 7-3
supported configurations 7-2
time sources 1-14
VACLs 1-12
verifying installation 7-8
IDS switch modules
unsupported models 1-8
indicators
IDS-4210 2-2
initialization
verifying 9-7
initializing the sensor 9-1, 9-2
inline mode
described 1-3, 1-4
inline pairs
described 1-3
installation preparation 1-16
installing
AIP-SSM 6-3
IDS-4210 2-5
IDS-4215 3-7
IDS-4235 4-7
IDS-4250 4-7
IPS-4240 5-7
IPS-4255 5-7
license key 10-10
NM-CIDS 8-6
power supply 4-10
SCSI hard-disk drives 4-17
sensor license 10-8
SX card 4-12
XL cards 4-13
interface support (table) 1-5
IPS-4240
accessories 5-5
back panel
figure 5-3
indicators 5-3
described 5-1
features 5-2
front panel
figure 5-2
indicators 5-2
installing 5-7
rack mounting 5-6
specifications 5-4
IPS-4255
accessories 5-5
back panel (figure) 5-3
front panel
figure 5-2
indicators 5-2
installing 5-7
rack mounting 5-6
specifications 5-4
IPS software
available files 10-1
obtaining 10-1
platform-dependent release examples 10-5
versioning scheme 10-2
L
license key
installing 10-10
status 10-6
trial 10-6
licensing
described 10-6
IPS device serial number 10-6
Licensing pane
configuring 10-8
described 10-6
logging in
terminal servers 1-9
M
modes
bypass 1-3
IDS 1-1
inline 1-3, 1-4
IPS 1-1
promiscuous 1-3
modules
AIP-SSM
memory specifications 6-1
specifications 6-1
IDSM-2 1-12, 7-2, 7-3, 7-4, 7-5, 7-10
NM-CIDS 1-12, 8-1, 8-4, 8-5, 8-6, 8-8, 8-9, 8-10, 8-11
N
Network Timing Protocol
See NTP
NM-CIDS
blank panels 8-11
described 1-12
front panel 8-4
hardware architecture 8-3
installing 8-6
OIR support 8-8
required tools 8-5
interfaces 8-4
OIR support 8-5
removing 8-9
requirements
hardware 8-3
platforms 8-2
specifications 8-1
status indicators 8-4
time sources 1-13, 1-15
NM-CIDS interfaces
described 8-4
NTP
described 1-14
time synchronization 1-14
O
obtaining
IPS software 10-1
P
passwords
service account 9-2
PFC
described 7-5
Policy Feature Card
See PFC
powering down
IDSM-2 7-15
powering up
IDSM-2 7-15
power supply guidelines 1-19
preparing
sensor installation 1-16
promiscuous mode
described 1-3
R
racks
configuration guidelines 1-18
removing
AIP-SSM 6-5
NM-CIDS 8-9
SCSI hard-disk drives 4-16
requirements
AIP-SSM 6-2
resetting IDSM-2 7-13
RJ-45 cable pinouts 1-22
RJ-45 to DB2-5 cable pinouts 1-23
RJ-45 to DB-9 cable pinouts 1-23
S
security information
Cisco Security Center 10-12
sensors
AIP-SSM 1-11
capturing traffic 1-1
comprehensive deployment 1-1
Comprehensive Deployment Solutions (figure) 1-1
electrical guidelines 1-18
IDS mode 1-1
initializing 9-1, 9-2
interface support 1-5
IPS mode 1-1
license 10-8
models 1-6
network topology 1-6
NTP time synchronization 1-14
power supply guidelines 1-19
preparing for installation 1-16
rack configuration guidelines 1-18
recovering the system image 10-5
reimaging 10-5
setup command 9-1, 9-2
site guidelines 1-17
supported 1-6
TCP reset 1-2
time sources 1-14
unsupported 1-7
setting up a terminal server 1-9
setup command 9-1, 9-2
show module 1 command 6-4
site guidelines 1-17
slot assignments
IDSM-2 7-5
supervisor engines 7-5
software downloads Cisco.com 10-1
SPAN
appliances 1-8
IDSM-2 1-12
status
AIP-SSM 6-4
Switched Port Analyzer
See SPAN
System Configuration Dialog 9-1
T
TCP reset 1-2
TCP reset interface
conditions 1-4
terminal servers
setting up 1-9
TFTP servers
recommended 3-9
UNIX 3-9
Windows 3-9
time
correcting on the sensor 1-16
time sources
AIP-SSM 1-15
appliances 1-14
IDSM-2 1-14
NM-CIDS 1-15
trial license key 10-6
troubleshooting
TCP reset interface 4-6
U
understanding
time on the sensor 1-14
unsupported sensors 1-7
upgrading
4.1 to 5.0 10-5
minimum required version 10-5
URLs for Cisco Security Center 10-12
using
TCP reset interface 1-4
V
VLAN access control list
See VACLs
VACLs
IDSM-2 1-12
verifying
IDSM-2 installation 7-8
sensor initialization 9-7
sensor setup 9-7
X
XL cards
fiber ports 4-14
installing 4-13