5.4.1.2 Packet Tracer Configure IOS Intrusion Prevention System IPS Using CLI
5.4.1.2 Packet Tracer Configure IOS Intrusion Prevention System IPS Using CLI
Addressing Table
fo
Device Interface IP Address Subnet Mask Default Gateway Switch Port
R1
G0/1
S0/0/0
192.168.1.1
10.1.1.1
.in
255.255.255.0
255.255.255.252
N/A
N/A
S1 F0/1
N/A
pt
S0/0/0 (DCE) 10.1.1.2 255.255.255.252 N/A N/A
fp
R2
S0/0/1 (DCE) 10.2.2.2 255.255.255.252 N/A N/A
.o
Objectives
Enable IOS IPS.
Configure logging.
Modify an IPS signature.
Verify IPS.
Background / Scenario
Your task is to enable IPS on R1 to scan traffic entering the 192.168.1.0 network.
The server labeled Syslog is used to log IPS messages. You must configure the router to identify the syslog
server to receive logging messages. Displaying the correct time and date in syslog messages is vital when
using syslog to monitor the network. Set the clock and configure the timestamp service for logging on the
routers. Finally, enable IPS to produce an alert and drop ICMP echo reply packets inline.
The server and PCs have been preconfigured. The routers have also been preconfigured with the following:
© 2018 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 1 of 3
www.ofppt.info
Packet Tracer -Configure IOS Intrusion Prevention System (IPS) using CLI
fo
d. Save the running-config and reload the router to enable the security license.
.in
e. Verify that the Security Technology package has been enabled by using the show version command.
On R1, configure the IPS signature storage location to be the directory you just created.
w
© 2018 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 2 of 3
www.ofppt.info
Packet Tracer -Configure IOS Intrusion Prevention System (IPS) using CLI
fo
Step 2: Use show commands to verify IPS.
Use the show ip ips allcommand to viewthe IPS configuration status summary.
To which interfaces and in which direction is the iosips rule applied?
.in
_______________________________________________________________________________________
pt
Step 3: Verify that IPS is working properly.
fp
____________________________________________________________________________________
____________________________________________________________________________________
w
____________________________________________________________________________________
____________________________________________________________________________________
w
© 2018 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 3 of 3
www.ofppt.info