ZyXEL Communications ZyWALL 1100 User Manual page 454

Zywall/usg series
Hide thumbs Also See for ZyWALL 1100:
Table of Contents

Advertisement

Table 182 Configuration > UTM Profile> IDP > Profile > Add > Group View (continued)
LABEL
DESCRIPTION
Severity
These are the severities as defined in the ZyWALL/USG. The number in brackets is the
number you use if using commands.
Severe (5): These denote attacks that try to run arbitrary code or gain system privileges.
High (4): These denote known serious vulnerabilities or attacks that are probably not false
alarms.
Medium (3): These denote medium threats, access control attacks or attacks that could be
false alarms.
Low (2): These denote mild threats or attacks that could be false alarms.
Very Low (1): These denote possible attacks caused by traffic such as Ping, trace route,
ICMP queries etc.
Policy Type
This displays the application of the IDP profile.
Log
These are the log options. To edit this, select an item and use the Log icon.
Action
This is the action the ZyWALL/USG should take when a packet matches a signature here. To
edit this, select an item and use the Action icon.
Excepted
Use the icons to enable/disable and configure logs and actions for individual signatures that
Signatures
are different to the general settings configured for the severity level to which the signatures
belong. Signatures configured in Query View will appear in Group View.
Add
Click this to configure settings to a signature that are different to the severity level to which
it belongs.
Remove
Select an existing signature exception and then click this to delete the exception.
Activate
To turn on an entry, select it and click Activate.
Inactivate
To turn off an entry, select it and click Inactivate.
Log
To edit an item's log option, select it and use the Log icon. These are the log options:
no: Select this option on an individual signature or a complete service group to have the
ZyWALL/USG create no log when a packet matches a signature(s).
log: Select this option on an individual signature or a complete service group to have the
ZyWALL/USG create a log when a packet matches a signature(s).
log alert: An alert is an e-mailed log for more serious events that may need more
immediate attention. Select this option to have the ZyWALL/USG send an alert when a
packet matches a signature(s).
Chapter 28 IDP
ZyWALL/USG Series User's Guide
454

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents