Juniper NETWORK AND SECURITY MANAGER 2010.3 - CONFIGURING INTRUSION DETECTION AND PREVENTION GUIDE REV1 Manual page 119

Configuring intrusion detection and prevention devices guide
Table of Contents

Advertisement

Table 51: IDP Device Configuration: Protocol Thresholds and Configuration Settings (continued)
Setting
Description
MSN
Maximum Username length–Raises a protocol anomaly if IDP detects an MSN (Microsoft Instant Messaging)
username containing more bytes than the specified maximum. The default is 84 bytes.
Maximum Display name length–Raises a protocol anomaly if IDP detects an MSN display name containing
more bytes than the specified maximum. The default is 128 bytes.
Maximum Group name length–Raises a protocol anomaly if IDP detects an MSN group name containing
more bytes than the specified maximum. The default is 84 bytes.
Maximum User state length–Raises a protocol anomaly if IDP detects an MSN user state containing more
bytes than the specified maximum. A user state is a three-letter code that indicates the status of the user's
connection (online, offline, idle, and so on). The default is 10 bytes.
Maximum Phone number length –Raises a protocol anomaly if IDP detects a phone number containing more
bytes than the specified maximum. The default is 20 bytes.
Maximum Length of IP:port–Raises a protocol anomaly if IDP detects an IP:port parameter containing more
bytes than the specified maximum. An IP:port parameter indicates the IP address and port number of the
MSN server for a switchboard session. The default is 30 bytes.
Maximum URL length–Raises a protocol anomaly if IDP detects a URL containing more bytes than the
specified maximum. The default is 1024 bytes.
MSRPC
Maximum fragment length in MSRPC message–Raises a protocol anomaly if IDP detects an MSRPC (Microsoft
Remote Procedure Call) message with a fragment length greater than the specified maximum. The default
is 8192.
Maximum tower data length in endpoint mapper messages–Raises a protocol anomaly if IDP detects an
endpoint mapper message with a tower data length greater than the specified maximum. The default is 8192.
Maximum number of entries in an insert message–Raises a protocol anomaly if IDP detects an MSRPC insert
message with more entries than the specified maximum. The default is 100 entries.
NFS
Maximum Name length –Raises a protocol anomaly if IDP detects an NFS packet name containing more
bytes than the specified maximum. The default is 256 bytes.
Maximum Path length–Raises a protocol anomaly if IDP detects an NFS packet pathname containing more
bytes than the specified maximum. The default is 1024 bytes.
Maximum buffer length for read/write–Raises a protocol anomaly if IDP detects an NFS read/writer buffer
larger than the specified maximum. The default is 32,768 bytes.
Copyright © 2010, Juniper Networks, Inc.
Chapter 8: Configuring Intrusion Detection and Prevention Device Settings
103

Advertisement

Table of Contents
loading

This manual is also suitable for:

Network and security manager 2010.3

Table of Contents