Intrusion Prevention Configuration Settings - F-SECURE CLIENT SECURITY 7.00 Administrator's Manual

Hide thumbs Also See for CLIENT SECURITY 7.00:
Table of Contents

Advertisement

6.7.1

Intrusion Prevention Configuration Settings

The Intrusion Prevention configuration settings can be found in the
Intrusion Prevention section on the Firewall Security Levels page.
Enable intrusion prevention
If enabled, intrusion detection is used to monitor inbound traffic in
order to find intrusion attempts. If disabled, intrusion prevention
does not monitor traffic.
Action on malicious packet
Options available:
Log and drop the packet means that the packet is logged into
the alertlog with the packet header information (IPs, ports and
protocol) and it is not allowed to pass through the intrusion
detection component
Log without dropping the packet means that the packet is
logged into the alertlog with the packet header information
(IPs, ports and protocol) but it is also allowed to pass through
the intrusion detection component
Alert severity
Options available: No alerting, informational, warning, security
alert
Intrusion attempts can be set to use different severities
depending on how administrator or local user wants to see the
messages.
CHAPTER 6
219

Advertisement

Table of Contents
loading
Need help?

Need help?

Do you have a question about the CLIENT SECURITY 7.00 and is the answer not in the manual?

Questions and answers

This manual is also suitable for:

Client security

Table of Contents