Initializing the Sensor
Initializing the sensor is where the rubber meets the road, so to
speak. Besides physically installing the sensor into a rack and cabling, this is
the basic process for getting your sensor up and running. Two accounts are
created by default when the sensor software is installed: root and netrangr. These should be the
only accounts needed to log in to the sensor and perform administrative tasks.
In fact, certain commands can only be performed as root or
netrangr, so it's best to become familiar with them.
Listed next are several ways to gain management access of the
sensor:
-
Console Port This requires a RS232 cable
and a program such as Hyperterm or Teraterm.
-
Monitor and keyboard This requires
connecting a monitor and keyboard directly to the sensor.
-
Telnet This requires an IP address to be
configured to the command and control interface.
-
Secure Shell (SSH) This also requires an
IP address and an SSH client application.
-
Cisco IDS Device Manager (IDM) This
requires an IP address and uses a Web browser.
-
Cisco Secure Policy Manger (CSPM) An IP
address is required along with a mail server for the PostOffice protocol to
communicate with.
-
Cisco IDS Director for Unix The Director requires HP OpenView and runs on an HP or Solaris
platform.
The easiest way to initialize the sensor for the first time is
either through a directly connected keyboard and monitor, or by using the COM
port connected to a workstation via a null-modem cable.