Page 16
Enabling Security Services in SonicOS
Enabling Intrusion Prevention Services
To enable Intrusion Prevention (IPS) in SonicOS:
1.
Navigate to the
Security Services
>
Intrusion Prevention
page.
2.
Select the
Enable Intrusion Prevention
checkbox.
3.
In the Signature Groups
table, select the
Prevent All
and
Detect All
checkboxes based on attack priority.
Note:
Prevent All
blocks attacks of the chosen priority, and
Detect All
saves a log of these attacks that can be
viewed on the
Log
>
View
page.
4.
Click the
Accept
button to apply changes.
Intrusion Prevention contains other useful features, including:
•
Exclusion Lists
for network nodes where IPS
enforcement is not necessary.
•
Log Redundancy
to control log size during high-volume
intrusion attack attempts by enforcing a delay between log
entries.
Tip:
For a complete overview of IPS features, refer to the
SonicOS Enhanced Administrator’s Guide.
TZ_210_GSG.book Page 16 Thursday, November 13, 2008 7:41 PM