Cisco Systems 2.5 Network Router User Manual


  Open as PDF
of 1002
 
Chapter 27 Cisco IOS IPS
Create IPS
27-2
Cisco Router and Security Device Manager 2.5 User’s Guide
OL-4015-12
IPS Rules
A Cisco IOS IPS rule specifies an interface, the type and direction of traffic that
it is to examine, and the location of the signature definition file (SDF) that the
router uses.
Create IPS
In this window you can launch the IPS Rule wizard.
The IPS Rule wizard prompts you for the following information:
The interface on which to apply the rule
The traffic on which to apply Cisco IOS IPS (inbound, outbound, or both)
The location of the signature definition file (SDF)
For Cisco IOS 12.4(11) or later images, you are also prompted for the following
information:
Where you want to store files that contain changes to the IOS IPS
configuration. A file that stores this type of information is referred to as a
delta file.
The public key to use to access the information in the delta files.
The signature category. The basic signature category is appropriate for
routers with less than 128 Mb of flash memory. The advanced signature
category is appropriate for routers with more than 128 Mb of flash memory.
The use case scenario illustrates a configuration in which a Cisco IOS IPS rule is
used. After you create the Cisco IOS IPS rule and deliver the configuration to the
router, you can modify the rule by clicking the Edit IPS tab.
For more information on Cisco IOS IPS, see the documents at the following link:
http://www.cisco.com/en/US/products/ps6634/prod_white_papers_list.html
Click the Launch IPS Rule Wizard button to begin.