User Guide
177
CHAPTER 11
Intrusion Detection
and Prevention
The WatchGuard Firebox System can protect your net-
work from many types of attacks. In addition to the
protection provided through filtered and proxied ser-
vices, the Firebox also gives you the following tools to
stop attacks that services are not designed to defeat.
Default packet handling
Options for how the firewall handles
incoming communications that appear to be
attacks on a network.
Blocked sites
An IP address outside the Firebox that is
prevented from connecting to hosts behind the
Firebox. The Blocked Sites feature of the
Firebox helps you prevent unwanted contact
from known or suspected hostile systems.
Blocked ports
Ports that are designated as vulnerable entry
points to your network. A blocked port setting
blocks packets that enter your network
through the external interface.
Summary of Contents for Firebox X1000
Page 1: ...WatchGuard Firebox System User Guide WatchGuard Firebox System...
Page 12: ...xii WatchGuard Firebox System...
Page 44: ...Chapter 2 Service and Support 22 WatchGuard Firebox System...
Page 61: ...Cabling the Firebox User Guide 39...
Page 68: ...Chapter 3 Getting Started 46 WatchGuard Firebox System...
Page 78: ...Chapter 4 Firebox Basics 56 WatchGuard Firebox System...
Page 156: ...Chapter 8 Configuring Filtered Services 134 WatchGuard Firebox System...
Page 182: ...Chapter 9 Configuring Proxied Services 160 WatchGuard Firebox System...
Page 220: ...Chapter 11 Intrusion Detection and Prevention 198 WatchGuard Firebox System...
Page 242: ...Chapter 12 Setting Up Logging and Notification 220 WatchGuard Firebox System...
Page 256: ...Chapter 13 Reviewing and Working with Log Files 234 WatchGuard Firebox System...
Page 274: ...Chapter 14 Generating Reports of Network Activity 252 WatchGuard Firebox System...