CHAPTER EIGHT Network Security Using Cisco IOS IPS

Terms You’ll Need to Understand:

Image

Intrusion Protection System (IPS)

Image

Intrusion Detection System (IDS)

Image

Sensor

Image

Inline

Image

Promiscuous

Image

Host Intrusion Protection System (HIPS)

Image

Network Intrusion Protection System (IPS)

Image

Signatures

Image

Alerts

Image

Micro-engine

Image

Signature Alarms

Image

Signature Definition File (SDF)

Image

Secure Device Event Exchange (SDEE)

Exam Topics Covered in This Chapter:

Image

Define network based vs. host based intrusion detection and prevention

Image

Explain IPS technologies, attack responses, and monitoring options

Image

Enable and verify Cisco IOS IPS operations using SDM

Note

These exam topics are from cisco.com. Check there periodically for the latest exam topics and info.

Cisco has many solutions for Intrusion Protection and Detection Systems (IPS and IDS). These solutions run the gamut from purpose-built rackmount appliances for the enterprise to host-based solutions such as Cisco Security Agent (CSA) to provide intrusion protection right to the endpoint. Deploying these solutions as part of the Cisco Self-Defending Network is a challenge and a deep subject all of itself. In this chapter, we do a high-level overview of the different solutions, starting with defining the systems and terminology involved. The chapter culminates with using the Cisco Security Device Manager (SDM) IPS Wizard to configure the Cisco IOS IPS.

..................Content has been hidden....................

You can't read the all page of ebook, please click here login for view all page.
Reset