Chapter27 Cisco IOS IPS
Create IPS
27-4
Cisco Router and Security Device Manager 2.5 User’s Guide
OL-4015-12
Create IPS: Signature File
The Cisco IOS IPS signature file contains the default signature information
present in each update to the file on Cisco.com. Any changes made to this
configuration are saved in a delta file. For security, the delta file must be digitally
signed. Specify the location of the signature file and provide the name and text of
the public key that will be used to sign the delta file in this window.
This help topic describes the Signature File window that is displayed when the
router runs Cisco IOS 12.4(11)T and later releases.

Specify the signature file you want to use with IOS IPS

If the signature file is already present on the PC, router flash memory, or on a
remote system, click Specify the signature file you want to use with IOS IPS to
display a dialog in which you can specify the signature file location.

Get the latest signature file from CCO and save to PC

Click Get the latest signature file from CCO and save to PC if the signature file
is not yet present on the PC or in router flash memory. Click Browse to specify
where you want to save the signature file, and then click Download to begin
downloading the file. Cisco SDM downloads the signature file to the location that
you specify.

Configure Public Key

Each change to the signature configuration is saved in the delta file. This file must
be digitally signed with a public key. You can obtain a key from Cisco.com and
paste the information in the Name and Key fields.
Note If you have already added a public key to the configuration using the Cisco IOS
CLI, you must still provide a public key in this screen. After you have completed
the Cisco IOS IPS Rule Wizard, you can go to Edit IPS > Global Settings. In the
Global Settings screen, you can click Edit in the Edit IPS Prerequisites area, and
then click Public Key to display the Public Key dialog. In that dialog, you can
delete public keys that you do not need.
Follow these steps to place the public-key information in the Name and Key fields.