RE: Cisco IDS

From: Gary Halleen (ghalleen@cisco.com)
Date: 02/14/02


From: "Gary Halleen" <ghalleen@cisco.com>
To: "Mario Audet" <audetmario@hotmail.com>, <focus-ids@securityfocus.com>
Date: Thu, 14 Feb 2002 09:36:53 -0800

The Cisco IDS can do shunning on the following:

        Cisco PIX Firewall (with PIX 6.0 and higher)
        Cisco Catalyst RSM or MSFC (layer 3)
        Cisco Catalyst 6xxx series (layer 2)
        Cisco IOS Router

In addition, it's also possible to use a custom script to provide any other
action, but you'll need to write it with whichever scripting tool you wish,
and have installed on the management server.

Gary Halleen
Systems Engineer, Security and Wireless
Northwest Specialists Region

Cisco Systems, Inc.
5300 SW Meadows Road, Suite 300
Lake Oswego, OR 97035
Phone: 503.598.7134 / FAX 503.598.7199
Internet: gary@cisco.com

-----Original Message-----
From: Mario Audet [mailto:audetmario@hotmail.com]
Sent: Monday, February 11, 2002 1:20 PM
To: focus-ids@securityfocus.com
Subject: Cisco IDS

Hi all,

Do you know if Cisco IDS 4230 can works with
Check Point Firewall-1? I want to know if this
appliance can modify a route in the firewall to block a
communication.

I think than ISS Network Sensor can do it with Check
Point and Nokia firewalls.

Thanks,

Mario



Relevant Pages

  • Re: Cisco IDS
    ... I've heard of the term shunnin from an ex colleague before ... BEst Rgds, ... > Subject: Cisco IDS ... > Check Point Firewall-1? ...
    (Focus-IDS)
  • Cisco IDS
    ... ('binary' encoding is not supported, ... Do you know if Cisco IDS 4230 can works with ... Check Point Firewall-1? ... Point and Nokia firewalls. ...
    (Focus-IDS)