Chapter 10
Configuring the Sensor Using the CLI
•
•
Cisco Intrusion Detection System Appliance and Module Installation and Configuration Guide Version 4.1
78-15597-02
power enable module slot_number
–
Turns on the power for the IDSM-2 if it is not already on.
vlan access-map map_name_sequence
–
Creates the VACL maps.
vlan filter map_name vlan-list vlans
–
Maps the VACL maps to VLANs.
Interface configuration mode
switchport
–
Sets the interface as a switch port.
switchport access vlan vlan
–
Sets the access VLAN for the interface.
–
switchport capture
Sets the interface as a capture port.
switchport mode access
–
Sets the interface as an access port.
switchport mode trunk
–
Sets the interface as a trunk port.
switchport trunk allowed vlan vlans
–
Sets the allowed VLANs for trunk.
–
switchport trunk encapsulation dot1q
Sets dot1q as the encapsulation type.
–
switchport trunk native vlan vlan
Sets the native VLAN for the trunk port.
VACL configuration submode
–
action forward capture
Designates that matched packets should be captured.
match ip address {1-199 | 1300-2699 | acl_name}
–
Specifies filtering in the VACL.
IDSM-2 Configuration Tasks
10-109