Index
IN-3
Cisco Intrusion Prevention System Sensor CLI Configuration Guide for IPS 7.2
OL-29168-01
ARC
ACLs
14-21, A-14
authentication
A-15
blocking
connection-based
A-17
response
A-13
unconditional blocking
A-17
blocking application
14-2
blocking not occurring for signature
C-41
Catalyst switches
VACL commands
A-19
VACLs
A-16, A-19
VLANs
A-16
checking status
14-4, 14-5
described
A-4
design
14-2
device access issues
C-39
enabling SSH
C-41
features
A-14
firewalls
AAA
A-18
connection blocking
A-18
NAT
A-18
network blocking
A-18
postblock ACL
A-16
preblock ACL
A-16
shun command
A-18
TACACS+
A-18
formerly Network Access Controller
14-1
functions
14-2, A-12
illustration
A-13
inactive state
C-37
interfaces
A-14
maintaining states
A-16
master blocking sensors
A-14
maximum blocks
14-2
misconfigured master blocking sensor
C-42
nac.shun.txt file
A-16
NAT addressing
A-15
number of blocks
A-15
postblock ACL
A-16
preblock ACL
A-16
prerequisites
14-6
rate limiting
14-4
responsibilities
A-13
single point of control
A-15
SSH
A-14
supported devices
14-6, A-15
Telnet
A-14
troubleshooting
C-35
VACLs
A-14
verifying device interfaces
C-40
verifying status
C-36
ARP
Layer 2 signatures
B-14
protocol
B-14
ARP spoof tools
dsniff
B-14
ettercap
B-14
ASA 5500-X IPS SSP
assigning virtual sensors
18-7
bypass mode
18-9, 18-10, 19-11
creating virtual sensors
18-5
initializing
2-13
logging in
ii-4
memory usage
17-14, 18-11, C-67
memory usage values (table)
17-14, 18-11, C-67
no CDP mode support
4-36
Normalizer engine
18-10, B-38, C-66
notes and caveats
18-1
password recovery
17-4, C-10
resetting the password
17-5, C-10
sensing interface
18-4
session command
ii-4
sessioning in
ii-4
setup command
2-13
show module command
18-3
sw-module module 1 recover configure
18-12