Creating custom signatures
30
Table 6: TCP header keywords
Keyword and Value
--ack <ack_int>;
--dst_port [!]{<port_int> |
:<port_int> | <port_int>: |
<port_int>:<port_int>};
--seq <seq_int>;
--src_port [!]{<port_int> |
:<port_int> | <port_int>: |
<port_int>:<port_int>};
Description
Check for the specified TCP acknowledge
number.
The destination port number.
You can specify a single port or port range:
•
<port_int> is a single port.
•
:<port_int> includes the specified port and
all lower numbered ports.
•
<port_int>: includes the specified port and
all higher numbered ports.
•
<port_int>:<port_int> includes the two
specified ports and all ports in between.
Check for the specified TCP sequence number.
The source port number.
You can specify a single port or port range:
•
<port_int> is a single port.
•
:<port_int> includes the specified port and
all lower numbered ports.
•
<port_int>: includes the specified port and
all higher numbered ports.
•
<port_int>:<port_int> includes the two
specified ports and all ports in between.
FortiGate IPS User Guide Version 3.0 MR7
01-30007-0080-20080916
Custom signatures
Need help?
Do you have a question about the Network Device IPS and is the answer not in the manual?
Questions and answers