EasyManua.ls Logo

Source fire Sourcefire 3D System User Manual

Default Icon
280 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
Page #1 background imageLoading...
Page #1 background image
Version 5.2 Sourcefire 3D System Installation Guide 1
Sourcefire 3D System
Installation Guide
Version 5.2

Table of Contents

Question and Answer IconNeed help?

Do you have a question about the Source fire Sourcefire 3D System and is the answer not in the manual?

Source fire Sourcefire 3D System Specifications

General IconGeneral
VendorSourcefire
CategoryFirewall
Form FactorAppliance
Intrusion Prevention System (IPS)Yes
Intrusion Detection System (IDS)Yes
Network Behavior AnalysisYes
Application ControlYes
URL FilteringYes
Threat Intelligence IntegrationYes
Management InterfaceWeb-based GUI, CLI
Deployment OptionsOn-premise
ProductSourcefire 3D System

Summary

CHAPTER 1 INTRODUCTION TO THE SOURCEFIRE 3D SYSTEM

Sourcefire 3D System Appliances

Overview of Sourcefire 3D System appliances including Defense Centers and Managed Devices.

Sourcefire 3D System Components

Key capabilities of the Sourcefire 3D System contributing to security and traffic management.

Licensing the Sourcefire 3D System

Explanation of licensing options for features to create an optimal Sourcefire 3D System deployment.

Security, Internet Access, and Communication Ports

Requirements for securing the Defense Center and enabling appliance communication.

Sourcefire 3D System Open Communication Ports Requirements

Details on required open ports for intra-appliance communication and feature access.

CHAPTER 2 UNDERSTANDING DEPLOYMENT

Understanding Deployment Options

Factors to consider for designing a Sourcefire 3D System deployment based on network needs.

Understanding Interfaces

Explanation of different interface types and how they function in Sourcefire 3D System deployments.

Connecting Devices to Your Network

Methods for connecting managed devices to the network using hubs, taps, or span ports.

Cabling Inline Deployments on Copper Interfaces

Special attention to cabling for maintaining network connectivity if a device fails.

Deployment Options

Guidelines on placing managed devices to monitor or protect networks using IDS/IPS.

Using a Multi-Port Managed Device

Utilizing multiple sensing ports on devices for network taps, virtual routers, or switches.

Complex Network Deployments

Addressing advanced deployment scenarios involving VPNs or multiple entry points.

CHAPTER 3 INSTALLING A SOURCEFIRE 3D SYSTEM APPLIANCE

Included Items

List of components shipped with Sourcefire appliances.

Security Considerations

Important security aspects to consider before installing an appliance.

Identifying the Management Interfaces

Locating the management interface for appliance communication and administration.

Identifying the Sensing Interfaces

Locating sensing interfaces for connecting to network segments for monitoring.

Using Devices in a Stacked Configuration

Combining resources of identically configured devices for increased traffic inspection.

Installing the Appliance in a Rack

Procedure for physically installing the appliance into a rack.

Redirecting Console Output

Changing the default console output destination from VGA to a serial port.

Testing an Inline Bypass Interface Installation

Verifying the installation and latency of an inline bypass interface.

CHAPTER 4 SETTING UP A SOURCEFIRE 3D SYSTEM APPLIANCE

Understanding the Setup Process

Outlines the setup process, depending on appliance model and physical access.

Setting Up a Series 2 Appliance or Series 3 Defense Center

Choices for setting up Series 2 devices and Series 3 Defense Centers.

Setting Up a Series 3 Device

Setup methods for Series 3 devices via CLI or web interface.

Configuring Network Settings Using a Script

Using a script to specify network settings for appliance communication.

Performing Initial Setup on a Series 3 Device Using the CLI

Using the CLI to perform initial setup, change password, and configure settings.

Registering a Series 3 Device to a Defense Center Using the CLI

Registering a Series 3 device to its managing Defense Center via the CLI.

Initial Setup Page: Devices

Web interface steps for initial configuration of managed devices.

Initial Setup Page: Defense Centers

Web interface steps for initial configuration of Defense Centers.

Next Steps

Guidance on post-setup administrative tasks and deployment configuration.

CHAPTER 5 USING THE LCD PANEL ON A SERIES 3 DEVICE

Understanding LCD Panel Components

Identifying the components of the LCD panel and its main menu.

Using the LCD Multi-Function Keys

Navigating menus and options using the four multi-function keys.

Idle Display Mode

How the LCD panel displays system information when the device is idle.

Network Configuration Mode

Configuring network settings for the management interface via the LCD panel.

System Status Mode

Viewing monitored system information and adjusting LCD panel settings.

Information Mode

Viewing identifying system information such as serial number and firmware versions.

Error Alert Mode

How the LCD panel displays error or fault conditions.

CHAPTER 6 HARDWARE SPECIFICATIONS

Rack and Cabinet Mounting Options

Information on mounting Sourcefire appliances in racks and server cabinets.

Sourcefire Defense Centers

Hardware specifications for Sourcefire Defense Center models.

Sourcefire Series 2 Devices

Hardware specifications for Sourcefire Series 2 devices.

Sourcefire 7000 Series Devices

Hardware specifications for Sourcefire 7000 Series devices.

Sourcefire 8000 Series Devices

Hardware specifications for Sourcefire 8000 Series devices.

CHAPTER 7 RESTORING A SOURCEFIRE APPLIANCE TO FACTORY DEFAULTS

Before You Begin

Preliminary information to familiarize yourself with the expected behavior during restore.

Understanding the Restore Process

Explanation of the restore process, including traffic flow and configuration loss.

Obtaining the Restore ISO and Update Files

Instructions on acquiring the correct ISO image and update files from the Support Site.

Beginning the Restore Process

Starting the restore utility via KVM, physical serial, or Lights-Out Management.

Using the Interactive Menu to Restore an Appliance

Guide to using the interactive menu to perform appliance restoration.

Saving and Loading Restore Configurations

Saving and loading restore configurations for later use.

Restoring a DC1000 or DC3000 Using a CD

Specific procedure for restoring DC1000 and DC3000 Defense Centers using a CD.

Next Steps

Actions to perform after restoring an appliance, including initial setup.

Scrubbing the Contents of the Hard Drive

Securely overwriting data on the appliance's hard drive.

Setting up Lights-Out Management

Enabling and configuring Lights-Out Management (LOM) for remote access.

CHAPTER 8 SAFETY AND REGULATORY INFORMATION

General Safety Guidelines

General safety practices applicable to all Sourcefire appliances.

Safety Warning Statements

Important safety warnings and precautions for product installation and use.

Regulatory Information

Compliance with safety standards and regulations for various regions.

Waste Electrical and Electronic Equipment Directive (WEEE)

Information regarding the disposal of Sourcefire products.

APPENDIX A POWER REQUIREMENTS FOR SOURCEFIRE DEVICES

Warnings and Cautions

General safety warnings and cautions related to power requirements.

Interface Connections

Notes on connecting intra-building and OSP wiring for safety.

Static Control

Procedures to prevent damage from electrostatic discharge during installation.

3D7010/7020/7030

Power requirements for 3D7010, 3D7020, and 3D7030 models.

3D7110/7120 and 3D7115/7125

Power requirements for 3D7110/7120 and 3D7115/7125 models.

3D8120/8130/8140 and 3D8250/8260/8270/8290

Power requirements for 8000 Series devices including AC and DC installation.

APPENDIX B USING SFP TRANSCEIVERS ON A 3D7115 OR 3D7125

3D7115 and 3D7125 SFP Sockets and Transceivers

Details on the eight SFP sockets and compatible transceivers for these devices.

Inserting an SFP Transceiver

Procedure for properly inserting an SFP transceiver into a socket.

Removing an SFP Transceiver

Procedure for safely removing an SFP transceiver from a socket.

APPENDIX C INSERTING AND REMOVING 8000 SERIES MODULES

Module Slots on the 8000 Series Appliances

Identifying the available module slots in 81xx and 82xx family appliances.

Included Items

List of items included in the module assembly kit.

Identifying the Module Parts

Identifying the common parts found on all 8000 series modules.

Before You Begin

Preparation guidelines before inserting or removing modules.

Removing a Module or Slot Cover

Procedure for safely removing a module or slot cover.

Inserting a Module or Slot Cover

Procedure for inserting a new module or slot cover.

Glossary