File Help
m Configuration |
m Monitoring |
O O Back For war d |
<§> f Retresh Herp |
^isę^Tsniis |
_L Signature Configuration
□ O. Sensor Setup l-fi&Network :-<p&Aiiowed Hosts B 0>SSH
fSlAuthorized Keys fSlKnown Host Keys ■fSsensor Key B Q.Certificates rf^Trusted Hosts L $£)Server Certificate ;• 'pSTime :-^Users 0- Q interface Configuration
• 'fSSummaiy ••■faDlnterfaces •-IpSinterface Pairs
• f^K/LAN Pairs
• ‘faDSypass
-fi&TralTlc Flow Notiflcatlons 0 ClAnalysis Engine ?• fSMttual Sensor ^Global Variables 0- Q Signature Definilion 'pDSignature Variables
ffeignature Configuration
■fScustom Signature Wizard IpDMiscellaneous 0- Q> Event Action Rules -1jS)Eventvariables f5TargetValue Rating ‘faDEvent Action Oyerrides ■fklEyent Action Fllters f§General Settings
_i —
a
A r»i- .i z.. -
IDM is initialized successfully.
SelectBy: |aii Signatures 3 Select Criterla |~mta-
Sig ID |
SubSig ID |
Name |
Enabied |
Action |
Severity |
Fidelity Rating |
Base RR |
1000 1 0 |
IP options-Bad Option List |
Yes |
Produce Alert |
Informatio... |
75 |
18 | |
1001 |
0 |
IP options-Record PacketRo... |
No |
Produce Alen |
Informatio... |
100 |
25 |
1002 |
0 |
IP options-Timestamp |
NO |
Produce Alert |
Informatio... |
100 |
25 |
1003 |
0 |
IP options-Provide s.c.h.tcc |
No |
Produce Alert |
Informatio... |
100 |
25 |
1004 |
0 |
IP options-Loose Source Ro.. |
NO |
Produce Alert |
High |
100 |
100 |
1005 |
0 |
IP options-SATNET ID |
No |
Produce Alert |
Informatio... |
100 |
25 |
1006 |
0 |
IP options-Stnct Source Route |
Yes |
Produce Alert |
High |
100 |
100 |
1007 |
0 |
IPv6 Over IPv4 |
NO |
Produce Alert |
Informatio... |
100 |
25 |
1101 |
0 |
Unknown IP Protocol |
Yes |
Produce Alert |
Informatio... |
75 |
18 |
1102 |
0 |
impossibie IP Packet |
Yes |
Produce Alert |
High |
100 |
100 |
1104 |
0 |
IP Localhost Source Spoof |
Yes |
Produce Alert |
High |
100 |
100 |
1107 |
0 |
RFC 1918 Addresses Seen |
No |
Produce Alert |
Informatio... |
100 |
25 |
1108 |
0 |
IP Packet with Proto 11 |
Yes |
Produce Alert |
High |
100 |
100 |
1109 |
3 |
Cisco IOS Interface DoS |
No |
Produce Alert |
Medium |
75 |
56 |
1109 |
0 |
Cisco IOS interface Dos |
NO |
Produce Alert |
Medium |
75 |
56 |
1109 |
2 |
Cisco IOS Interface DoS |
No |
Produce Alert |
Medium |
75 |
56 |
1109 |
1 |
Cisco IOS Interface DoS |
NO |
Produce Alert |
Medium |
75 |
56 |
1200 l |
0 |
IP Fragmentation Buffer Fuli |
Yes |
Deny Packet in., Produce Alert |
Informatio... |
100 |
25 |
Restore Defaults
Apply
Reset
Select Ali
NSD0 Link
Add
Clone
Edit
Enable
Disable
Actions
Delete
Activate
Retire
CISCO
administrator
a