Using The Cli To View Ids Signature Events - Cisco 2100 Series Configuration Manual

Wireless lan controller
Hide thumbs Also See for 2100 Series:
Table of Contents

Advertisement

Chapter 5
Configuring Security Solutions
If desired, you can reset a specific signature or all signatures to default values. To do so, enter this
Step 16
command:
config wps signature reset {signature_id | all}
Note

Using the CLI to View IDS Signature Events

Use these commands to view signature events using the controller CLI.
1.
2.
OL-17037-01
You can reset signatures to default values only through the controller CLI.
To see whether IDS signature processing is enabled or disabled on the controller, enter this
command:
show wps summary
Information similar to the following appears:
Client Exclusion Policy
Excessive 802.11-association failures.......... Enabled
Excessive 802.11-authentication failures....... Enabled
Excessive 802.1x-authentication................ Enabled
IP-theft....................................... Enabled
Excessive Web authentication failure........... Enabled
Signature Policy
Signature Processing........................... Enabled
If IDS signature processing is disabled, all signatures are disabled, regardless of the state
Note
configured for individual signatures.
To see individual summaries of all of the standard and custom signatures installed on the controller,
enter this command:
show wps signature summary
Information similar to the following appears:
Signature-ID..................................... 1
Precedence....................................... 1
Signature Name................................... Bcast deauth
Type............................................. standard
FrameType........................................ management
State............................................ enabled
Action........................................... report
Tracking......................................... per Signature and Mac
Signature Frequency.............................. 50 pkts/interval
Signature Mac Frequency.......................... 30 pkts/interval
Interval......................................... 1 sec
Quiet Time....................................... 300 sec
Description...................................... Broadcast Deauthentication Frame
Patterns:
0(Header):0x00c0:0x00ff
4(Header):0x01:0x01
Cisco Wireless LAN Controller Configuration Guide
Configuring IDS
5-117

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

4400 series

Table of Contents