Cisco Cisco IPS 4520 Sensor
5
Release Notes for Cisco Intrusion Prevention System 7.1(6)E4
OL-27710-01
ROMMON and TFTP
ROMMON and TFTP
ROMMON uses TFTP to download an image and launch it. TFTP does not address network issues such
as latency or error recovery. It does implement a limited packet integrity check so that packets arriving
in sequence with the correct integrity value have an extremely low probability of error. But TFTP does
not offer pipelining so the total transfer time is equal to the number of packets to be transferred times
the network average RTT. Because of this limitation, we recommend that the TFTP server be located on
the same LAN segment as the sensor. Any network with an RTT less than a 100 milliseconds should
provide reliable delivery of the image. Be aware that some TFTP servers limit the maximum file size that
can be transferred to ~32 MB.
as latency or error recovery. It does implement a limited packet integrity check so that packets arriving
in sequence with the correct integrity value have an extremely low probability of error. But TFTP does
not offer pipelining so the total transfer time is equal to the number of packets to be transferred times
the network average RTT. Because of this limitation, we recommend that the TFTP server be located on
the same LAN segment as the sensor. Any network with an RTT less than a 100 milliseconds should
provide reliable delivery of the image. Be aware that some TFTP servers limit the maximum file size that
can be transferred to ~32 MB.
IPS Management and Event Viewers
Use the following tools for configuring Cisco IPS 7.1(6)E4 sensors:
•
Cisco IDM 7.1.5
IDM 7.1.5 is included within the IPS 7.1(6)E4 files.
IDM 7.1.5 is included within IME 7.2.3.
IDM 7.1.5 requires JRE 1.6 or later.
You can use IDM 7.1.5 to configure IPS 6.2, 7.0, and 7.1 sensors.
•
Cisco IME 7.2.3
You can use IME 7.2.3 to configure IPS 6.1, 6.2, 7.0, and 7.1 sensors.
•
IPS CLI included in IPS 7.1(6)E4.
•
Cisco ASDM 6.3.4 and later.
Use the following tools for monitoring Cisco IPS 7.1(6)E4 sensors:
•
IDM 7.1.5
•
IME 7.2.3
•
MARS minimum version 5.2 and latest version 6.0.5
•
CSM 4.3 and later
You can use CSM 4.3 to manage the following IPS sensors:
–
IPS 4270-20
–
IPS 4345
–
IPS 4345-DC
–
IPS 4360
–
IPS 4510
–
IPS 4520
–
ASA 5585-X IPS SSP-10
–
ASA 5585-X IPS SSP-20
–
ASA 5585-X IPS SSP-40
–
ASA 5585-X IPS SSP-60
–
ASA 5512-X IPS SSP