Chapter 18. Troubleshooting IDM and IDS/IPS Management Console (IDS/IPS MC)

To take advantage of the full functionality intrusion detection system (IDS/IPS) sensors, you need two pieces of software: a management utility for configuring the sensor, and a reporting utility for viewing alarms generated by the sensor. The IDS/IPS sensors come loaded with an Intrusion Detection Manager (IDM) for configuration. For alarm viewing, the Intrusion Detection Event Viewer (IEV) can be downloaded free of charge (IEV is discussed in detail in Chapter 22, “Troubleshooting IEV and Security Monitors”). In summary, IDM is the management piece, and IEV is the reporting tool for small deployment (typically 1-2 sensors). As with IDM, you can configure only one sensor; ...

Get Cisco Network Security Troubleshooting Handbook now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.