Custom Signature Example - ZyXEL Communications ZyWall USG 2000 User Manual

Unified security gateway
Hide thumbs Also See for ZyWall USG 2000:
Table of Contents

Advertisement

Chapter 34 IDP
Table 161 Configuration > Anti-X > IDP > Custom Signatures > Add/Edit (continued)
LABEL
OK
Cancel

34.8.2 Custom Signature Example

Before creating a custom signature, you must first clearly understand the
vulnerability.
34.8.2.1 Understand the Vulnerability
Check the ZyWALL logs when the attack occurs. Use web sites such as Google or
Security Focus to get as much information about the attack as you can. The more
specific your signature, the less chance it will cause false positives.
As an example, say you want to check if your router is being overloaded with DNS
queries so you create a signature to detect DNS query traffic.
596
DESCRIPTION
Click this button to save your changes to the ZyWALL and return to
the summary screen.
Click this button to return to the summary screen without saving any
changes.
ZyWALL USG 2000 User's Guide

Advertisement

Table of Contents
loading

Table of Contents