301
Additionally the IDS may be connected to the monitor port of a switch using a dedicated
network interface. In this configuration the complete signature base is available.
However the IDS operates in a passive mode only, i.e. malicious data packets will be
logged but not dropped.
Disabled rules
Here you can disable individual rules in case of repeated false alerts. Please enter the
rule number which is visible in the logs. The log format is [1:RULENUMBER:number].
If for example the log shows [1:2010123:0], please add 2010123.
The rules will be disabled in both, the active IDS (Internet
interface) and the passive IDS (monitor port).
Local networks
Some IDS rules distinguish between internal and external IP addresses. Here you
configure which addresses are considered to be internal.
Static IPs of Internet interfaces are automatically appended to
the list.
Additional IPS rules against Web server attacks
Enables specific rules to detect attacks against web and FTP servers.
Additional IPS rules against mail server attacks
Enables specific rules to detect attacks against SMTP, IMAP4 and POP3 servers.
14.2.1-C
Intrusion Detection Update
Systems with a software maintenance contract receive signature updates multiple
times a week.
Update server
The update server address can be changed in menu "System > Update". Also a proxy
can be configured there if necessary.
Update IDS signatures automatically
When enabled, SX-GATE will check for new signatures daily between 18:00 and 21:00.
Содержание SX-GATE
Страница 1: ...State 2016 12 13 V7 0 2 0 User Guide ...
Страница 92: ...12 1 Setup 92 There s no way to restore a purchased certificate without backup ...
Страница 126: ...12 3 3 Groups 126 12 3 3 C Usage This table show in which settings the definition is used ...
Страница 476: ...15 3 Apple iPhone 476 ...