220
14.1.2.1-G
Packet monitor
Local networks
Some IDS rules distinguish between internal and external IP addresses. Here you
configure which addresses are considered to be internal.
14.1.2.1-H
Server addresses
Some IDS rules are tailor-made for specific server protocols. Enter the IP addresses of
systems offering the respective services. If no addresses are provided, the IDS expects
that this service is available from all internal addresses, which might have a negative
impact on the system's performance.
14.1.2.1-I
Additional rulesets
Some important rulesets are always enabled. The rulesets on this tab may be added
as appropriate.
Web server attacks
Enables specific rules to detect attacks against web and FTP servers.
Mail server attacks
Enables specific rules to detect attacks against SMTP, IMAP4 and POP3 servers.
Internet server attacks
Enables specific rules to detect attacks against other typical internet services like DNS
or SIP (VoIP).
LAN server attacks
Enables specific rules to detect attacks against services usually active in LAN networks.
This includes Windows protocols, UNIX RPC and SQL servers.
The majority of rules apply only to access from outside the local
networks.
Extended browser surveillance
This ruleset monitors web browsers. It alerts if it detects attacks or vulnerable software
components.