IDS Configuration
Except on the first page, right running head:
Heading1 or Heading1NewPage text (automatic)
825
Alcatel-Lucent
Beta
Beta
CLI Configuration Guide
T
O
E
NABLE
/D
ISABLE
S
NORT
R
ULE
E
XAMPLE
To enable Snort rule:
ALU(config-firewall-intrusion-snort)# rule enable classtype
attempted-dos
To disable Snort rule:
ALU(config-firewall-intrusion-snort)# rule disable classtype
attempted-dos
T
O
M
ODIFY
S
NORT
R
ULE
E
XAMPLE
To modify the rule given below, use the rule modify command:
Original rule:
alert tcp $
HOME_NET
any -> $EXTERNAL_NET any (msg:"ATTACK-
RESPONSES directory listing"; flow:from_server,established;
content:"Volume Serial Number"; classtype:bad-unknown;
sid:1292; rev:8;)
Modification of rule to $EXTERNAL_NET is shown below:
ALU(config-firewall-intrusion-snort)# rule modify 1292
content alert tcp
$EXTERNAL_NET
any -> $EXTERNAL_NET any
(msg:"ATTACK-RESPONSES directory listing";
flow:from_server,established; content:"Volume Serial
Number"; classtype:bad-unknown; sid:1292; rev:8;)
Command (in Intrusion Snort CM)
Description
rule
enable
{{
category
<name>...
|
classtype <name>...
|
priority
{
high
|
low
|
medium
}|
sid
<
1-4294967295...
>}
Use this command to enable Snort rules
by Snort Rule ID (SID), class type,
priority, or category.
rule
disable
{{
category
<name>...
|
classtype <name>...
|
priority
{
high
|
low
|
medium
}|
sid
<
1-4294967295...
>}
Use this command to disable Snort
rules by Snort rule ID (SID), class type,
priority, or category.
Command (in Intrusion Snort CM)
Description
rule modify
<
1-4294967295
>
content
<rule-content>
Use this command to modify Snort rule.
Содержание OmniAccess 700
Страница 38: ...Left running head Chapter name automatic 12 Beta Beta CLI Configuration Guide Alcatel Lucent ...
Страница 176: ...Left running head Chapter name automatic 150 Beta Beta CLI Configuration Guide Alcatel Lucent ...
Страница 224: ...Per VLAN Spanning Tree Left running head Chapter name automatic 198 Beta Beta CLI Configuration Guide Alcatel Lucent ...
Страница 258: ...Port Monitoring Left running head Chapter name automatic 232 Beta Beta CLI Configuration Guide Alcatel Lucent ...
Страница 260: ...Left running head Chapter name automatic 234 Beta Beta CLI Configuration Guide Alcatel Lucent ...
Страница 296: ...T1E1 Line Card Left running head Chapter name automatic 270 Beta Beta CLI Configuration Guide Alcatel Lucent ...
Страница 360: ...Point to Point Protocol Left running head Chapter name automatic 334 Beta Beta CLI Configuration Guide Alcatel Lucent ...
Страница 434: ...Left running head Chapter name automatic 408 Beta Beta CLI Configuration Guide Alcatel Lucent ...
Страница 462: ...Common Classifiers Left running head Chapter name automatic 436 Beta Beta CLI Configuration Guide Alcatel Lucent ...
Страница 464: ...Left running head Chapter name automatic 438 Beta Beta CLI Configuration Guide Alcatel Lucent ...
Страница 534: ...Border Gateway Protocol Left running head Chapter name automatic 508 Beta Beta CLI Configuration Guide Alcatel Lucent ...
Страница 638: ...Left running head Chapter name automatic 612 Beta Beta CLI Configuration Guide Alcatel Lucent ...
Страница 762: ...Filter and Firewall Left running head Chapter name automatic 736 Beta Beta CLI Configuration Guide Alcatel Lucent ...
Страница 890: ...Transparent Firewall Left running head Chapter name automatic 864 Beta Beta CLI Configuration Guide Alcatel Lucent ...
Страница 940: ...Left running head Chapter name automatic 914 Beta Beta CLI Configuration Guide Alcatel Lucent ...
Страница 1000: ...Quality of Service Left running head Chapter name automatic 974 Beta Beta CLI Configuration Guide Alcatel Lucent ...
Страница 1002: ...Left running head Chapter name automatic 976 Beta Beta CLI Configuration Guide Alcatel Lucent ...
Страница 1044: ...DNS Domain Name Service Client Left running head Chapter name automatic 1018 Beta Beta CLI Configuration Guide Alcatel Lucent ...
Страница 1046: ...Left running head Chapter name automatic 1020 Beta Beta CLI Configuration Guide Alcatel Lucent ...
Страница 1058: ...Left running head Chapter name automatic 1032 Beta Beta CLI Configuration Guide Alcatel Lucent ...
Страница 1074: ...Lifeline Left running head Chapter name automatic 1048 Beta Beta CLI Configuration Guide Alcatel Lucent line con 0 end ...
Страница 1076: ...Left running head Chapter name automatic 1050 Beta Beta CLI Configuration Guide Alcatel Lucent ...
Страница 1118: ...Web Cache Server Left running head Chapter name automatic 1092 Beta Beta CLI Configuration Guide Alcatel Lucent ...
Страница 1120: ...Left running head Chapter name automatic 2 Beta Beta CLI Configuration Guide Alcatel Lucent ...
Страница 1140: ...QoS Values and Mnemonics Left running head Chapter name automatic 22 Beta Beta CLI Configuration Guide Alcatel Lucent ...
Страница 1156: ...IPsec Interoperability of OA 700 Left running head Chapter name automatic 38 Beta Beta CLI Configuration Guide Alcatel Lucent ...