Re: IPS Device Manager - Allowed Hosts versus Trsuted Hosts

From: Farrukh Haroon (farrukhharoon@gmail.com)
Date: Thu Jun 07 2007 - 14:13:29 ART


Hello

The Configuration > Sensor Setup > "Allowed Hosts" are the ones that
can 'manage' the sensor. i.e. hosts that can connect to the sensor for
management.

The Configuration > Sensor Setup > Certificate >> "Trusted Hosts" are
the ones that the sensor connects to, like Master blocking sensors (a
different IDS/IPS sensors who performs the blocking function on behalf
of this sensor, which is required if more than one sensor need to
'apply' blocking on a router,switch etc, as only one sensor can manage
the 'blocking interfaces' of a particular 'blocking router/switch' at
once )

This area contains the certificates used for communication with these
devices. There certs. are the certificates of these devices (not the
sensor's own certificate).

There are also SSH >> Known Hosts and SSH >> Allowed Hosts

You can unicast me for more info about those (if u'r interested) :)

Regards

Farrukh

On 6/7/07, anthony.sequeira@thomson.com <anthony.sequeira@thomson.com> wrote:
> Does anyone have any comment for me on the differences between the
> following configuration features in IPS Device Manager? It seems like
> they would always need to be configured congruently. Thanks in advance!
>
>
>
> Configuration > Sensor Setup > Certificates > Trusted Hosts
>
>
>
> Configuration > Sensor Setup > Allowed Hosts
>
>
>
> Anthony J. Sequeira
>
> #15626
>
> _______________________________________________________________________
> Subscription information may be found at:
> http://www.groupstudy.com/list/CCIELab.html



This archive was generated by hypermail 2.1.4 : Sun Jul 01 2007 - 17:24:47 ART