ip ssh timeout [#] //idle logon timeout value
ip ssh authentication-retries [#] //specifies how many times a person can attempt continous logons
LOGGING
logging buffered [level]
logging [ip]
logging trap [level]
logging origin-id hostname \\specifies a hostname instead of ip address]
logging facility [type] \\specifies another virtual log table for organizational efforts
SNMP
snmp-server community [word [ro/rw] [acl]
snmp-server engineID [word]
snmp-server group [word] v3 [authentication]
snmp-server user [word] [group] v3 ...
NTP
ntp server [ip]
show ntp association
ntp master [stratum number]
ntp authentication-key [#] [word]
ntp peer [ip] key [#]
ntp trusted key [#]
IP INSPECT
show ip insepect sessions
ip inspect [word] [rule] [option]
(config-if)ip insepct [word] in/out
IPS
Actions of IPS
- alarm
- drop
- reset
- Download/install sdf file
- create ips rule
- adjust ips settings
- apply to interface
- configure logging (SDEE, security device event exchange)
ip ips sdf location flash://[file]
ip ips name [word] [acl]
ip ips signature [#]
(config-if)ip ips [name] in/out
ip ips notify [log, sdee]
Sorry so brief.....need the post for notes!
No comments:
Post a Comment