ESR series service routers.ESR-Series. User manual
Step Description Command Keys
5 Set the time to reboot
the device after
receiving the certificate.
esr (config-content-provider)# reboot
immediately | [time <HH:MM:SS>]
Restart the device after receiving the
certificate.
time <HH:MM:SS> – The time at
which ESR will reboot
<hours:minutes:seconds>.
6 Enable content
provider.
enable
7 Set the interval for
accessing the edm
server in hours.
esr (config-content-provider)# upgrade
interval <1-240>
8 Specify description
(optional).
esr (config-content-provider)#
description<LINE>
<LINE> (1-255) – string describing
server.
9 Set device text name
that is transmitted to
the EDM-Issue server
(optional).
esr (config-content-provider)# system-
name <WORD>
<WORD> – name, set by the string of
up to 255 characters.
10 Set text description that
is transmitted to the
EDM-Issue server
(optional).
esr (config-content-provider)# location
<WORD>
<WORD> – description, set by the
string of up to 255 characters.
11 Create IP addresses
lists which will be used
during filtration.
esr (config)# object-group network
<WORD>esr (config-object-group-
network)# ip prefix <ADDR/LEN>
<WORD> – server name, set by the
string of up to 32 characters.
<ADDR/LEN> – subnet, defined as
AAA.BBB.CCC.DDD/EE where each
part AAA-DDD takes values of [0..255]
and EE takes values of [1..32].
12 Enable service-ips on
interface.
esr (config)# interface gigabitethernet
1/0/Xesr (config-if-gi)# service-ips
enable
13 Create IPS/IDS security
policy.
esr (config)# security ips policy
WORD(1-31)
WORD(1-31)
14 Specify the IP address
profile that IPS/IDS will
protect.
esr(config-ips-policy)# protect network-
group <OBJ-GROUP-NETWORK_NAME>
<OBJ-GROUP-NETWORK-NAME> –
protected IP addresses profile name,
set by the string of up to 32
characters.
15 Enter the vendor
configuration section.
esr (config-ips-policy)# vendor
kaspersky