In this chapter, you
will learn to:
-
Plan for the proper deployment of CIDS sensors
-
Understand the common strategies used to deploy sensors
-
Sensor bootstrap configuration
-
Use Cisco’s IDS Device Manager
-
Configure sensors using IDS Device Manager
Sensors form the heart and eyes of the Cisco intrusion detection
system (CIDS). For optimum performance, sensors should be deployed at various
locations throughout your network. The correct placement of sensors is critical
to ensure consistent IDS coverage. This chapter discusses where sensors should
be placed, as well as the common strategies used for sensor deployment.
Sensors can be configured using the built-in web application
IDS Device Manager. Each sensor can be configure to allow HTTP access to the
configuration utility provided in the sensor software. The IDS Device Manager
application is preinstalled on each sensor and only must be activated during
sensor bootstrap. Once the sensor is bootstrapped, the administrator can connect
to the sensor via the IP address configured.