Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people, just like you, are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
Solved

IDS Question

Posted on 2004-08-31
2
172 Views
Last Modified: 2010-04-17
Dear Experts

I have an IDS device, I got also a Evient viewer to see the Alarms,
my question is i can see the alarms with a different levels ( low, high, etc) how can i see the action that the sensor will take incase there is a high alams. i have event viewer and IDM.


Thanks
0
Comment
Question by:ibmas4002
2 Comments
 
LVL 79

Accepted Solution

by:
lrmoore earned 250 total points
ID: 11944995
The sensor will not take any actions. It only records/reports the events (that's why it is called a sensor)
Cisco Threat Response (CTR) runs on another server and can take designated actions in response to specified alarms.
Or, you need Cisco MVS running on a server that can integrate your firewalls and screening access routers to take actions based on specific alarms.
None of them are going to take any action that you do not specifically configure it to take.
0
 
LVL 2

Author Comment

by:ibmas4002
ID: 11945713
Thanks Irmoore,

but if i will will configure the blocking devices and other settings from the IDM, will I be able to set the actions?

see i have only the event viewer and the IDM, i dont have VMS, so can i manage our IDS.

Thanks for answer.


0

Featured Post

PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

It happens many times that access list (ACL) have to be applied to outgoing router interface in order to limit some traffic.This article is about how to test ACL from the router which is not very intuitive for everyone. Below scenario shows simple s…
I recently attended Cisco Live! in Las Vegas, a conference that boasted over 28,000 techies in attendance, and a week of hands-on learning hosted by a solid partner with which Concerto goes to market.  Every year, Cisco displays cutting-edge technol…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

861 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question