
254
Fortinet Inc.
Preventing attacks
Network Intrusion Detection System (NIDS)
Enabling NIDS attack prevention signatures
The NIDS Prevention module contains signatures that are designed to protect your
network against attacks. Some signatures are enabled by default; others must be
enabled. For a complete list of NIDS Prevention signatures and descriptions, see the
FortiGate NIDS Guide
.
1
Go to
NIDS > Prevention
.
2
Check the box in the Enable column beside each signature that you want to enable.
3
Select Check All
to enable all signatures in the NIDS attack prevention signature
list.
4
Select Uncheck All
to disable all signatures in the NIDS attack prevention
signature list.
5
Select Reset to Default Values
to enable only the default NIDS attack prevention
signatures and return to the default threshold values.
Figure 36: Example NIDS attack prevention signature list entries
Setting signature threshold values
You can change the default threshold values for the NIDS Prevention signatures listed
in
Table 7
. The threshold depends on the type of attack. For flooding attacks, the
threshold is the maximum number of packets received per second. For overflow
attacks, the threshold is the buffer size for the command. For large ICMP attacks, the
threshold is the ICMP packet size limit to pass through.
Summary of Contents for FortiGate 400
Page 13: ...Contents FortiGate 400 Installation and Configuration Guide 13 Glossary 295 Index 299 ...
Page 14: ...Contents 14 Fortinet Inc ...
Page 44: ...44 Fortinet Inc Next steps Getting started ...
Page 74: ...74 Fortinet Inc Transparent mode configuration examples Transparent mode installation ...
Page 148: ...148 Fortinet Inc Providing DHCP services to your internal network Network configuration ...
Page 168: ...168 Fortinet Inc Customizing replacement messages System configuration ...
Page 200: ...200 Fortinet Inc Content profiles Firewall configuration ...
Page 258: ...258 Fortinet Inc Logging attacks Network Intrusion Detection System NIDS ...
Page 294: ...294 Fortinet Inc Configuring alert email Logging and reporting ...
Page 298: ...298 Fortinet Inc Glossary ...
Page 308: ...308 Fortinet Inc Index ...