Troubleshooting Intrusion Detection

Troubleshooting the Cisco IDS solution is somewhat different from troubleshooting some of the other technologies and products you have seen so far. Instead of having a central set of debugs and show commands, the administrator more so needs to understand the functioning of the various daemons on the IDS boxes, as well as how the underlying UNIX OS works, to troubleshoot the issues arising in these implementations.

The following sections discuss the various commonly seen problems in the IDS and their solutions. You will become familiar with some of the common techniques used to diagnose and rectify these problems.

Commonly Seen IDS Problems and Resolutions

This section discusses the most common IDS problems ...

Get Network Security Principles and Practices now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.