Table A-1 6.x to 7.0 Keyword Mapping (continued)
6.x Keyword
IGNORE_DPORT
IGNORE_EXT
IGNORE_FROM
IGNORE_INT
IGNORE_IP
7.0 XML Attribute
NSC/SC/C/ApplicationFilter/IgnorePort (w/ direction)
NSC/SC/C/ApplicationFilter/ignore-external
NSC/SC/C/ApplicationFilter/ignore-from
NSC/SC/C/ApplicationFilter/ignore-int
NSC/SC/C/ApplicationFilter/IgnoreIP
Description
Similar to
"NSC/SC/C/ApplicationFilter/
IgnorePort/port" on page A-22, except that it
ignores packets based on destination port only.
These rules also apply to UDP and TCP packets.
Technical Note
Using this rule, up to 32 ports can be ignored.
Causes the Network Sensor to ignore all packets
with both source and destination IP addresses
outside of the "NSC/SC/C/ProtectedNetwork" on
page A-35 networks. This setting tells the
Network Sensor to concentrate only on packets
that involve the
"NSC/SC/C/ProtectedNetwork" on page A-35 in
some way, but to ignore packets that are outside
or exterior.
Causes Network Sensor to ignore all packets
with a source IP address
ProtectedNetwork" on page A-35, and a
destination IP address not in
ProtectedNetwork" on page A-35. This setting is
useful for concentrating on packets entering the
set of "NSC/SC/C/ProtectedNetwork" on
page A-35 ranges.
Causes Network Sensor to ignore all packets
with both source and destination IP addresses in
the "NSC/SC/C/ProtectedNetwork" on
page A-35. It is designed to ignore traffic that is
internal to a network.
Used to ignore a set of IP addresses or specific
networks. All traffic to or from these IP ranges is
dropped.
Technical Note
Using this rule, up to 32 IP addresses can be
ignored.
Creating Network Sensor Policies and Signatures A-21
6.x to 7.x Mappings
in"NSC/SC/C/
"NSC/SC/C/
Need help?
Do you have a question about the Intrusion Prevention System and is the answer not in the manual?