2-2
Cisco Intrusion Prevention System Sensor CLI Configuration Guide for IPS 7.2
OL-29168-01
Chapter2 In itializing the Sensor
Understanding Initialization
Understanding Initialization
After you install the sensor on your network, you must use the setup command to initialize it so that you
can communicate with it over the network.
With the setup command, you configure basic sensor settings, including the hostname, IP interfaces,
access control lists, global correlation servers, and time settings. You can continue using advanced setup
in the CLI to enable Telnet, configure the web server, enable SSHv1 fallback, and assign and enable
virtual sensors and interfaces, or you can use the Startup Wizard in the IDM or IME. After you configure
the sensor with the setup command, you can change the network settings in the IDM or IME.
Note
You must be administrator to use the setup command.
Simplified Setup Mode
The sensor automatically calls the setup command when you connect to the sensor using a console cable
and the sensor basic network settings have not yet been configured. The sensor does not call automatic
setup under the following conditions:
When initialization has already been successfully completed.
If you have recovered or downgraded the sensor.
If you have set the host configuration to default after successfully configuring the se nsor using
automatic setup.
When you enter the setup command, an interactive dialog called the System Configuration Dialog
appears on the system console screen. The Syste m Configuration Dialog guides you through the
configuration process. The values shown in brackets next to each prompt are the default values last set.
System Configuration Dialog
When you enter the setup command, an interactive dialog called the System Configuration Dialog
appears on the system console screen. The Syste m Configuration Dialog guides you through the
configuration process. The values shown in brackets next to each prompt are the current values.
You must go through the entire System Configuration Dialog until you come to the option that you want
to change. To accept default settings for items that you do not want to change, press Enter.
To return to the EXEC prompt without making changes and without going through the entire System
Configuration Dialog, press Ctrl-C. The System Configuration Dialog also provides help text for each
prompt. To access the help text, enter
?
at a prompt.
When you complete your changes, the System Configuration Dialog shows you the configuration that
you created during the setup session. It also asks you if yo u want to use this configuration. If you enter
yes
, the configuration is saved. If you enter
no
, the configuration is not saved and the process begins
again. There is no default for this prompt; you must enter either
yes
or
no
.
You can configure daylight savings time either in recurring mode or date mode. If you choose recurring
mode, the start and end days are based on week, day, month, and time. If you choose date mode, the start
and end days are based on month, day, year, and time. Choosing disable turns off daylight savings time.