
182
Defining your security environment
Understanding how protocols affect traffic
3
In the ICMP Based Protocol Properties dialog box, on the General tab, do the following:
4
Optionally, on the Description tab, type a more detailed description than you typed in the Caption
text box.
5
Click
OK
.
6
Optionally, do one of the following:
■
To save your configuration now and activate later, on the toolbar, click
Save
.
■
To activate your configuration now, on the toolbar, click
Activate
.
When prompted to save your changes, click
Yes
.
7
Do one of the following:
■
To use the protocol in a rule, add it to a service group, and use the service group in a rule.
■
To use the protocol in a packet filter, specify the entry direction associated with the protocol.
■
To use the protocol with IDS/IPS, add it to an IDS/IPS service.
Related information
For further information related to this topic, see the following:
■
“ICMP Based Protocol Properties—General tab”
■
■
“Enabling a new protocol to trigger IDS/IPS events”
■
Enabling a new protocol to trigger IDS/IPS events
If you want IDS events to be triggered for traffic that is passed using a new protocol that you create,
you must add the protocol to one of the IDS/IPS services on the IDS/IPD portmap. For example, if you
create a new protocol to pass HTTP events on port 1234, you must add that protocol to the IDS/IPS
HTTP service.
Prerequisites
Complete one of the following tasks before beginning this procedure:
■
“Configuring IP-based protocols”
■
“Configuring TCP/UDP-based protocols”
■
“Configuring ICMP-based protocols”
To add a new protocol to an IDS/IPS service
1
In the SGMI, in the left pane, under Assets, click
IDS/IPS
.
2
In the right pane, on the Portmap tab, under IDS/IPS services, highlight the service to which you
want to add the protocol, and then click
Properties
.
3
In the IDS Portmap Configuration Properties dialog box, on the Protocols tab, in the Available list,
select the protocol that you want to add to the IDS/IPS service, and then click the right arrow >>
button to move it to the Selected list.
Protocol name
Type a unique name for the protocol.
Message type
Type a number to represent the message type of the protocol.
Use GSP
Check this option to enable the custom protocol to use the GSP proxy.
Caption
Type a brief description of the custom protocol.
Содержание Security 5600 Series, Security 5400 Series,Clientless VPN 4400 Series
Страница 76: ...76 Managing administrative access Enabling SSH for command line access to the appliance...
Страница 242: ...242 Defining your security environment Controlling full application inspection of traffic...
Страница 243: ...243 Defining your security environment Controlling full application inspection of traffic...
Страница 269: ...268 Limiting user access Authenticating using Out Of Band Authentication OOBA...
Страница 319: ...318 Controlling traffic at the security gateway Blocking inappropriate content with content filtering...
Страница 373: ...372 Preventing attacks Enabling protection for logical network interfaces...
Страница 409: ...408 Providing remote access using VPN tunnels Multicast traffic through gateway to gateway IPsec tunnels...
Страница 509: ...508 Generating reports Upgrade reports...
Страница 553: ...552 Advanced system settings Configuring advanced options...
Страница 557: ...556 SSL server certificate management Installing a signed certificate...
Страница 861: ...860 Index...