13-2. IDS Embedded Sensor Configuration

You can use the information presented in this section to configure a router or firewall to operate as a virtual IDS sensor.

Locating the Signature Definitions

For a router running a Cisco IOS software release earlier than 12.3(8)T, or for a firewall platform running any version of PIX software, the signature definitions available for IDS are built into the operating system image itself. To update the signature definitions, you must upgrade the image file and reload the device.

If you are using a router running Cisco IOS software Release 12.3(8)T or later, the router supports the Dynamic Intrusion Protection System, also called IOS IPS. To update the signature definitions, you can download a signature definition ...

Get Cisco ASA and PIX Firewall Handbook now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.