Avaya BSGX4e User's Guide Page 147

  • Download
  • Add to my manuals
  • Print
  • Page
    / 456
  • Table of contents
  • TROUBLESHOOTING
  • BOOKMARKS
  • Rated. / 5. Based on customer reviews
Page view 146
BSGX4e Business Gateway User Guide 147
Release 01.01 NN47928-102
Security Configuration
tcpsynscan
A TCP SYN scan is a series of messages sent with the TCP Syn flag set.
pingsweep
ICMP requests are sent to multiple hosts. A ping sweep is a means to locate
network devices that are active and responding, and so, could be targets for an
attack.
IDS Scan Activation
To activate a scan type or change its timeout value, enter the following command:
> config ids scan
Table 52 describes the configuration parameters for config ids scan.
IDS Scan Activation Example
The following command activates detection of UDP port scans and sets its timeout
value to 30 seconds:
> config ids scan udpportscan timeout 30 active yes
*> save
Show IDS Scan Status
To see the status of IDS scan protection, enter the following command:
> show ids scan
IDS Scan:
Attack Threshold Timeout Active Name
-------------------------------------------------------
udpportscan 7 50 on UDP Port Scan
tcpsynscan 7 50 on TCP SYN Scan
pingsweep 3 60 on Ping Sweep
Spoof Protection
This section describes IDS spoof detection. You can activate IDS spoof detection for
all IP interfaces, including eth0, eth1, virtual interfaces (vifn), and VPN interfaces
(vpnn).
By default, IDS assumes the trust settings shown in Table 53.
Table 52. IDS Scan Configuration Parameters
Parameter Description
[attack] Scan attack type (udpportscan | tcpsynscan | pingsweep).
timeout Timeout after an attack is detected (in seconds). The default
is 50 seconds for udpportscan and tcpsynscan and 60 seconds
for pingsweep.
active Indicates whether detection for the attack type is activated.
Page view 146
1 2 ... 142 143 144 145 146 147 148 149 150 151 152 ... 455 456

Comments to this Manuals

No comments