Index

Table Of Contents

A - B - C - D - E - F - G - H - I - L - M - N - O - P - R - S - T - U - V - X -

Index

A

accelerator cards

See XL cards

access control list

See ACL

accessing IPS software 10-1

accessories

four-post racks

installing appliances in racks 4-20

installing cable-management arms 4-21

installing slide assemblies 4-18

rack-kit contents 4-18

routing cables 4-25

tools 4-18

IDS-4210

package contents 2-7

IDS-4235

package contents 4-9

IDS-4250

package contents 4-9

two-post racks

center-mount installations 4-28

flush-mount installations 4-29

marking racks 4-28

rack kit contents 4-27

tools 4-27

actions

ACL changes 1-3

IP logs 1-3

multiple packet drop 1-3

TCP reset

described 1-2

AIP-SSM

described 1-11

indicators 6-2

installing 6-3

memory specifications 6-1

models 1-11

removing 6-5

requirements 6-2

show module 1 command 6-4

specifications 6-1

time sources 1-15

verifying status 6-4

appliances

ACLs 1-3

described 1-8

four-post racks

installing appliances in racks 4-20

installing cable-management arms 4-21

routing cables 4-25

hardware

dual serial communication cables 4-7

spare hard-disk drives 4-5

terminal settings 4-7

IDS-4215

rack mounting 3-6

surface mounting 3-5

IDS-4235

front panel 4-2

indicators 4-3

IDS-4250

front panel 4-2

indicators 4-3

installing

XL cards 4-13

managers 1-8

models 1-8

restrictions 1-9

setting up a terminal server 1-9

SPAN 1-8

TCP reset 1-2

terminal server 1-9

time sources 1-14

two-post racks

marking racks 4-28

rack kit contents 4-27

tools 4-27

XL cards

fiber ports 4-14

ASA

described 1-11

attack responses

TCP reset 1-2

B

BIOS

IDS-4235

upgrading 4-5

IDS-4250

upgrading 4-5

bypass mode

function 1-3

C

cable pinouts

console port 1-22

RJ-45 1-22

RJ-45 to DB-25 1-23

RJ-45 to DB-9 1-23

Catalyst software

IDSM-2

enabling full memory tests 7-12

resetting 7-13

Cisco.com

accessing software 10-1

cryptographic access 10-6

downloading software 10-1

downloading software updates 10-6

software downloads 10-1

Cisco.com account 10-6

Cisco IOS software

IDSM-2

enabling full memory tests 7-13

resetting 7-14

Cisco Security Center

described 10-12

URL 10-12

Cisco Services for IPS

service contract 10-7

supported products 10-7

clear events command 1-16

command and control

Ethernet 1-2

commands

clear events 1-16

copy license-key 10-9

setup 9-2

show module 1 6-4

console port pinouts 1-22

copy license-key command 10-9

correcting time on the sensor 1-16

cryptographic access to Cisco.com 10-6

D

downloading

Cisco software 10-1

E

electrical safety guidelines 1-18

enabling

full memory tests

Catalyst software 7-12

Cisco IOS software 7-13

Encryption Software Export Distribution Authorization 10-2

ESD environment

working in 1-19

Event Store

clearing events 1-16

F

files

Cisco IPS (list) 10-1

G

guidelines

electrical safety 1-18

power supplies 1-19

rack configuration 1-18

sites 1-17

H

hardware

four-post racks 4-17

power supply 4-10

SCSI hard-disk drives 4-15

spare hard-disk drives 4-5

two-post racks 4-27

I

IDS-4210

accessories 2-7

bezel

described 2-7

installing 2-7

removing 2-7

center mount brackets

installing 2-8

tools 2-8

front mount brackets

installing 2-9

tools 2-9

front panel (figure) 2-2

indicators 2-2

installing 2-5

IDS-4215

4FE card

installing 3-22

removing 3-20

accessories 3-4

back panel

figure 3-2

indicators 3-2

BIOS upgrade 3-9

chassis cover

removing 3-11

replacing 3-13

compact flash device

removing 3-17

replacing 3-18

features 3-2

front panel

figure 3-2

indicators 3-2

hard-disk drive

removing 3-15

replacing 3-16

installing 3-7

rack mounting 3-6

ROMMON upgrade 3-9

specifications 3-3

surface mounting 3-5

upgrading

BIOS 3-9

ROMMON 3-9

IDS-4235

accessories 4-9

back panel (figure) 4-4

bezel

described 4-10

installing 4-10

removing 4-10

described 4-1

front panel (figure) 4-2

indicators 4-2

installing

power supply 4-10

procedure 4-7

SCSI hard-disk drives 4-17

specifications 4-5

upgrading BIOS 4-5

IDS-4250

accessories 4-9

back panel (figure) 4-4

bezel

described 4-10

installing 4-10

removing 4-10

front panel (figure) 4-2

indicators 4-2

installing 4-7

power supply 4-10

SCSI hard-disk drives 4-17

SX card 4-12

two hard-disk drives 4-15

XL cards 4-13

SCSI hard-disk drives

installing 4-17

removing 4-16

specifications 4-5

upgrading

BIOS 4-5

IDS-4250-XL

TCP reset interface 4-6

IDS appliances

four-post racks

installing slide assemblies 4-18

rack kit contents 4-18

tools 4-18

hardware

dual serial communication cables 2-5

terminal settings 2-5

IDS-4210

indicators 2-2

two-post racks

center-mount installations 4-28

flush-mount installations 4-29

unsupported models 1-7

IDSM-2

described 1-12

enabling full memory tests

Catalyst software 7-12

Cisco IOS software 7-13

front panel 7-3

hot swapping 7-4, 7-8

installing

procedure 7-5

required tools 7-4

verifying 7-8

PFC 7-5

powering down(Catalyst OS) 7-15

powering down (Cisco IOS) 7-15

powering up (Catalyst OS) 7-15

powering up (Cisco IOS) 7-15

removing 7-10

requirements 7-2

resetting 7-13

Catalyst software 7-13

Cisco IOS software 7-14

shutdown

button 7-3

command 7-3

described 7-10

slot assignments 7-5

SPAN 1-12

specifications 7-1

status indicator 7-3

supported configurations 7-2

time sources 1-14

VACLs 1-12

verifying installation 7-8

IDS switch modules

unsupported models 1-8

indicators

IDS-4210 2-2

initialization

verifying 9-7

initializing the sensor 9-1, 9-2

inline mode

described 1-3, 1-4

inline pairs

described 1-3

installation preparation 1-16

installing

AIP-SSM 6-3

IDS-4210 2-5

IDS-4215 3-7

IDS-4235 4-7

IDS-4250 4-7

IPS-4240 5-7

IPS-4255 5-7

license key 10-10

NM-CIDS 8-6

power supply 4-10

SCSI hard-disk drives 4-17

sensor license 10-8

SX card 4-12

XL cards 4-13

interface support (table) 1-5

IPS-4240

accessories 5-5

back panel

figure 5-3

indicators 5-3

described 5-1

features 5-2

front panel

figure 5-2

indicators 5-2

installing 5-7

rack mounting 5-6

specifications 5-4

IPS-4255

accessories 5-5

back panel (figure) 5-3

front panel

figure 5-2

indicators 5-2

installing 5-7

rack mounting 5-6

specifications 5-4

IPS software

available files 10-1

obtaining 10-1

platform-dependent release examples 10-5

versioning scheme 10-2

L

license key

installing 10-10

status 10-6

trial 10-6

licensing

described 10-6

IPS device serial number 10-6

Licensing pane

configuring 10-8

described 10-6

logging in

terminal servers 1-9

M

modes

bypass 1-3

IDS 1-1

inline 1-3, 1-4

IPS 1-1

promiscuous 1-3

modules

AIP-SSM

memory specifications 6-1

specifications 6-1

IDSM-2 1-12, 7-2, 7-3, 7-4, 7-5, 7-10

NM-CIDS 1-12, 8-1, 8-4, 8-5, 8-6, 8-8, 8-9, 8-10, 8-11

N

Network Timing Protocol

See NTP

NM-CIDS

blank panels 8-11

described 1-12

front panel 8-4

hardware architecture 8-3

installing 8-6

OIR support 8-8

required tools 8-5

interfaces 8-4

OIR support 8-5

removing 8-9

requirements

hardware 8-3

platforms 8-2

specifications 8-1

status indicators 8-4

time sources 1-13, 1-15

NM-CIDS interfaces

described 8-4

NTP

described 1-14

time synchronization 1-14

O

obtaining

IPS software 10-1

P

passwords

service account 9-2

PFC

described 7-5

Policy Feature Card

See PFC

powering down

IDSM-2 7-15

powering up

IDSM-2 7-15

power supply guidelines 1-19

preparing

sensor installation 1-16

promiscuous mode

described 1-3

R

racks

configuration guidelines 1-18

removing

AIP-SSM 6-5

NM-CIDS 8-9

SCSI hard-disk drives 4-16

requirements

AIP-SSM 6-2

resetting IDSM-2 7-13

RJ-45 cable pinouts 1-22

RJ-45 to DB2-5 cable pinouts 1-23

RJ-45 to DB-9 cable pinouts 1-23

S

security information

Cisco Security Center 10-12

sensors

AIP-SSM 1-11

capturing traffic 1-1

comprehensive deployment 1-1

Comprehensive Deployment Solutions (figure) 1-1

electrical guidelines 1-18

IDS mode 1-1

initializing 9-1, 9-2

interface support 1-5

IPS mode 1-1

license 10-8

models 1-6

network topology 1-6

NTP time synchronization 1-14

power supply guidelines 1-19

preparing for installation 1-16

rack configuration guidelines 1-18

recovering the system image 10-5

reimaging 10-5

setup command 9-1, 9-2

site guidelines 1-17

supported 1-6

TCP reset 1-2

time sources 1-14

unsupported 1-7

setting up a terminal server 1-9

setup command 9-1, 9-2

show module 1 command 6-4

site guidelines 1-17

slot assignments

IDSM-2 7-5

supervisor engines 7-5

software downloads Cisco.com 10-1

SPAN

appliances 1-8

IDSM-2 1-12

status

AIP-SSM 6-4

Switched Port Analyzer

See SPAN

System Configuration Dialog 9-1

T

TCP reset 1-2

TCP reset interface

conditions 1-4

terminal servers

setting up 1-9

TFTP servers

recommended 3-9

UNIX 3-9

Windows 3-9

time

correcting on the sensor 1-16

time sources

AIP-SSM 1-15

appliances 1-14

IDSM-2 1-14

NM-CIDS 1-15

trial license key 10-6

troubleshooting

TCP reset interface 4-6

U

understanding

time on the sensor 1-14

unsupported sensors 1-7

upgrading

4.1 to 5.0 10-5

minimum required version 10-5

URLs for Cisco Security Center 10-12

using

TCP reset interface 1-4

V

VLAN access control list

See VACLs

VACLs

IDSM-2 1-12

verifying

IDSM-2 installation 7-8

sensor initialization 9-7

sensor setup 9-7

X

XL cards

fiber ports 4-14

installing 4-13