Fortinet FortiWiFi FortiWiFi-60 Administration Manual page 300

Antivirus firewalls
Hide thumbs Also See for FortiWiFi FortiWiFi-60:
Table of Contents

Advertisement

Signature
300
Table 26: Actions to select for each predefined signature
Reset Client
Reset Server
Drop Session
Clear Session
Pass Session
Configuring predefined signatures
To enable or disable predefined signature groups
1
Go to IPS > Signature > Predefined.
2
Select the Configure icon next to the predefined signature group that you want to
enable or disable.
Figure 146:Enabling or disabling a predefined signature group
3
Select the enable box to enable the predefined signature group or clear the enable
box to disable the predefined signature group.
4
Select OK.
To configure predefined signature settings
1
Go to IPS > Signature > Predefined.
2
Select the blue triangle next to a signature group name to display the members of that
group.
3
Select the Configure icon for the signature you want to configure.
Figure 147:Configuring predefined IPS signatures
The FortiWiFi unit drops the packet that triggered the signature, sends a
reset to the client, and removes the session from the FortiWiFi session
table. Used for TCP connections only. If you set this action for non-TCP
connection based attacks, the action will behave as Clear Session. If the
Reset Client action is triggered before the TCP connection is fully
established it acts as Clear Session.
The FortiWiFi unit drops the packet that triggered the signature, sends a
reset to the server, and removes the session from the FortiWiFi session
table. Used for TCP connections only. If you set this action for non-TCP
connection based attacks, the action will behave as Clear Session. If the
Reset Server action is triggered before the TCP connection is fully
established it acts as Clear Session.
The FortiWiFi unit drops the packet that triggered the signature and drops
any other packets in the same session.
The FortiWiFi unit drops the packet that triggered the signature, removes
the session from the FortiWiFi session table, and does not send a reset.
The FortiWiFi unit lets the packet that triggered the signature and all other
packets in the session pass through the firewall.
01-28006-0014-20041105
IPS
Fortinet Inc.

Advertisement

Table of Contents
loading

Table of Contents