Chapter 10
Configuring the Sensor Using the CLI
Step 6
Step 7
Step 8
Adding Known Hosts to the SSH Known Hosts List
Step 1
Step 2
Step 3
Cisco Intrusion Detection System Appliance and Module Installation and Configuration Guide Version 4.1
78-15597-02
You can type an optional netmask to specify allowed networks.
sensor(config-Host-net)# accessList ipAddress
netmask
Exit configuration mode for network parameters:
sensor(config-Host-net)# exit
sensor(config-Host)# exit
You are prompted to apply the changes:
Apply Changes?:[yes]:
Type yes to apply the changes.
After the sensor has finished processing the configuration changes, the
prompt is displayed.
sensor(config)#
You must add hosts to the SSH known hosts list so that the sensor can recognize
the hosts that it can communicate with through SSH. These hosts are SSH servers
that the sensor needs to connect to for upgrades and file copying, and other hosts,
such as Cisco routers, PIX Firewalls, and Catalyst switches.
To add a host to the SSH known hosts list, follow these steps:
Log in to the CLI using an account with administrator or operator privileges.
Enter configuration mode:
sensor# configure terminal
Specify an SSH known host:
sensor(config)# ssh host-key
For example, to add the remote host 10.16.0.0 to the SSH known hosts list, type
the following command:
sensor(config)# ssh host-key
Sensor Initial Configuration Tasks
ip_address
ip_address
10.16.0.0
netmask
10-19
Need help?
Do you have a question about the IDS-4230-FE - Intrusion Detection Sys Fast Ethernet Sensor and is the answer not in the manual?
Questions and answers