Thursday, August 30, 2012

IOS IPS config Steps


  • Enabling IOS IPS on a router is fairly simple
    • Globally load the IPS Signature Package
    • Then create an IPS Rule
    • Then apply that rule to an interface either inbound or outbound
    • To decrypt the signature files we need an RSA Key based on the Cisco Public key
  • Configuration steps
    • "retire"(disable) all signature categories & then "unretire" (enable) the basic IOS IPS category.
    • created a directory in flash to store the IPS configuration
    • Create an IOS IPS rule.
    • Specify the location of the signature configuration information.
    • Apply the 

No comments: