Verifying the Correct Signature Updates, Management Software, and Version

I am working today at a Client Site where I installed several months ago a Cisco IPS 4240 Sensor. The Sensor is currently running Version 6.0(3)E1.
I am not certain how to proceed with respect to signature updates on this box.
Under signature definition, it lists the following:
Signature Update S291.0 2007-06-18
I have noticed on the Security Software Page for IPS that the latest Signature File is S336. Should I install this on the IPS? In order to perform this, will it take down the IPS unit?
Also, there are several Management applications listed under the "Network IPS/IDS Management/Monitoring Software" heading, including: IME, IPC MC, and ICS. I am already using IDM as well as IEV respectively to Configure/ Monitor and then IEV to Alarm on certain Events. What are IME, IPC MC, and ICS and how are they different from IDM and IEV??

IME = Intrusion Prevention Manager Express
- IME is fairly new (released only a month or 2 ago) IME is a next generation of IEV. It does the event monitoring of IEV, but is also able to do configuration similar to IDM. So it is IEV and IDM in one tool. The configuration screens of IME will only work IPS 6.1, but the event monitoring screens will work with 5.1, 6.0, and 6.1.
IPS MC = Intrusion Prevention System Management Center
IPS MC was a part of VMS (VPN and Security Management System). IPS MC was configuration of a large number of sensors.
IPS MC and VMS are both End Of Saled and were replaced with CSM
CSM = Cisco Security Manager
CSM is a multi-security device configuration management system. It is targeted at Enterprise customers with more than 5 sensors.
ICS = Intrusion Containment System
ICS was a product produced by Trend Micro Systems. Trend could create signatures for Viruses and Worms and then send an update to ICS and ICS would then create the signatures on the sensors. These signatures were known as the V signatures.
ICS has been End of Saled
So from your perspective you need not be concerned with IPS MC (VMS) or ICS.
IME should be of interest to you as an upgrade from IEV (IME like IEV is available as part of your existing sensor support contracts and is not an additional charge).
As you upgrade sensors to IPS v6.1 you might consider upgrading IEV to IME.
CSM (and also MARS) would be of interest if you are going to manage more than 5 sensors. (IME and IEV are limited to 5 sensors).

Similar Messages

Maybe you are looking for

  • Imac g5 leopard vs tiger conflict

    I recently tried to install leopard on my imac G5. However the disk seems damaged so i can't complete the installation. But when i abort installation and try my Tiger version it won't install because the kernel crashes. It says something like: unable

  • Continuous Integration in WebLogic Integration 9.2.2

    Is anyone using Cruise Control or another type of continuous integration solution to build WLI EARs using subversion as a code repository? We're running into an issue where we can't refresh the workspace without launching workshop and doing a refresh

  • Optimum operating temperature for 1.42/1.25DP MDD Machine

    Hello all, I have a DP 1.25 MDD. Lovin' it! My question: Last night, my machine was running at 135 degrees fahrenheit. After reading about chud tools 3.5.2 and enabling nap mode, my fans and temperature have gone down TREMENDOUSLY. Of course, I also

  • Incorrect Buy on Behalf name displayed for Deleted Shopping Cart

    Hi All, The issue is with the deleted Shopping Carts. In case of non deleted Shopping carts the Buy on behalf field displays correct value. I debugged and found that there is a bug in standard code itself. In class /SAPSRM/IF_CLL_MAPPER~REFRESH, the

  • ATP for Order Create vs Order Release

    In SAP there is an option for different ATP checks when creating a production order and when releasing a production order.  I'm not sure I understand the behavior we are seeing in our system.  Could be I have a fundamental misunderstanding of the fun