match intrusion {detection | prevention}
Except on the first page, right running head:
Heading1 or Heading1NewPage text (automatic)
713
Alcatel-Lucent
Beta
Beta
OmniAccess 700 CLI Command Reference Guide
MATCH
INTRUSION
{
DETECTION
|
PREVENTION
}
[<
1-65535>
]
match
[
all
|
any
] <
match-list name>
intrusion <sensor
name
>
{
detection
|
prevention
[
reset
]}
D
ESCRIPTION
Enter this command in the Firewall Policy Configuration mode.
This command is used to attach an intrusion sensor to a firewall policy, and create
rules (associate match-list and set priority for the rule) for a firewall policy. This
command also sets the action detection or prevention for the configured rule.
This rule number signifies the priority of a rule.
P
ARAMETER
E
XAMPLE
ALU(config-firewall)#policy policy1
ALU(config-firewall-policy1)#1 match m1 intrusion sensor1
detection
NO
DEBUG
TRACE
FIREWALL
INTRUSION
SELECTOR
no debug firewall
{
session
|
filter
|
nat
|
attack
|
alg
|
intrusion
|
selector
[
saddr
<
ip-
address>
|
daddr
<ip- address>
|
protocol
<number>
|
sport
<number>
|
dport
<number>
][
output
|
permanent
]|
all
[
detail-level
]}
Use this command to turn off the debugging functionality for IDS.
Parameter
Description
1-65535
The range for the intrusion rule. This rule
number signifies the priority of a rule.
match-list name
This command forms a match-list of the
Common Classifiers that are pre-
configured. In this type of match, the
relevant action is performed even if one
rule in the list is satisfied.
sensor name
Name of the sensor.
detection
Detects the intrusion.
prevention
Detects and also prevents the intrusion.
reset
Resets the connection on detection of
intrusion attacks.