Header
Home | Set as homepage | Add to favorites
  Search the Site     » Advanced Search
Sections
Syndication


Blogroll:

||||| ALL Cisco-Network ARTICLES |||||  
CCIE Journey,
The CCIE Journey,


Disabling Individual Signatures

Sep 15,2009 by alperen

image

Use the global configuration mode command ip audit signature to attach a policy to a signature. You can implement two policies: disable a signature or qualify the audit of a signature with an access list. This command is generally used to disable the auditing of a signature or to exclude specific hosts or network segments from being audited. Use the no form of this command to remove the policy. If the policy disabled a signature, then the no command re-enables the signature. If the policy attached an access list to the signature, the no command removes the access list. The syntax is

Rtr1(config)#ip audit signature signature-id {disable | list acl-list}
Rtr1(config)#no ip audit signature signature-id

signature-id

A unique integer that specifies a signature in the Director Network Security Database

disable

Disables the ACL associated with the signature

list

Specifies an ACL to associate with the signature

acl-list

The ACL configured on the router

This command was introduced in IOS 12.0(5)T. The default is that no policy is attached to a signature.


143 times read

Related news

» Using ACLs When Disabling Individual Signatures
by alperen posted on Sep 15,2009
» Create Named Audit Rules
by alperen posted on Sep 15,2009
» Intrusion Detection
by alperen posted on Feb 08,2010
» Creating an Audit Rule
by alperen posted on Sep 15,2009
» CIDS Signatures
by alperen posted on Mar 10,2010
Did you enjoy this article?
(total 0 votes)

comment Comments (0 posted) 

More Top News
CCSP-Cisco Certified Security Professional
Most Popular
Most Commented
Featured Author