. . . . .
M O N I T O R I N G T R A F F I C
User Guide
7-3
Initializing the Appliance
Use the following commands in
Table 7-1
to initialize the appliance, make it
transparent to the rest of the network, and prepare it to monitor traffic. For more information
about CLI commands, see the
CLI Command Reference Guide provided with your
Networks appliance.
Table 7-1: Commands to Initialize the
Freedom9
Appliance
Setting Up Alerts
Use the following commands in
Table 7-2
to create alerts (based on the criteria for this scenario)
and to create logs that describe events for review. For more information about CLI commands,
see the
CLI Command Reference Guide provided with your Freedom9 appliance.
Table 7-2: Commands to Set Up Alerts
Command
Description
unset interface eth0 ip
Unbinds the IP address from the eth0
interface. This is a pre-requisite for
transparent mode.
set address "trust" "webserver"
192.168.65.149/32
Creates the address object “webserver” in
the trust zone. This setting should be your
server address.
unset interface eth0 manage http
Required command to set transparent
mode.
set interface eth0 transparent
Set eth0 interface in transparent mode.
set interface eth0 zone trust
Assigns eth0 to the trust zone.
set interface eth1 transparent
Set eth1 interface in transparent mode.
set interface eth1 zone untrust
Assigns eth1 to the untrust zone.
set interface br0 ip 192.168.65.31/24
Assigns an IP address to the management
interface.
set interface br0 manage http
Enables web management on the
management interface.
set group service "web-traffic"
Creates a service group called web-traffic.
set group service "web-traffic" add "http"
Includes http traffic into the service group
web-traffic.
set group service "web-traffic" add "https"
Includes https traffic into group web-
traffic.
Command
Description
set alert conn-rate "cr-user-alert1"
threshold 2000 action log once
Creates an alert that will trigger when a
connection rate exceeds 2000
connections per second.
set alert aggr-bandwidth "ab-user-alert1"
threshold 100000 action log always
Creates an alert that will trigger when
bandwidth usage reaches 100 Mbps. A log
is generated every time this happens.
Summary of Contents for freeGuard Slim 100
Page 10: ...FSL100 User Guide x ...
Page 24: ...G E T T I N G ST A R T E D 1 1 14 User Guide ...
Page 42: ...SY S T E M M A NA G E M E N T 2 2 18 User Guide ...
Page 50: ...M A N A G I N G T R A F F IC F L O W 3 3 8 User Guide ...
Page 58: ...C O N F IG U R I N G A TT A C K PRE VE N T I O N 4 4 8 User Guide ...
Page 84: ...T R A F F I C F LO W R E P O R T I N G 5 5 26 User Guide ...
Page 122: ...M O N I T O R I N G T R A FF I C 7 7 16 User Guide ...
Page 134: ...U SI N G S N M P 8 8 12 User Guide ...
Page 166: ...A L PH AB E T I C LI S T I NG OF LO G M E SS AG E S C C 4 User Guide ...
Page 170: ...N O TI F I C A T I O N A N D S A F E T Y ST A TE M E N T S Battery Statement D D 4 User Guide ...