Chapter 22 IDP Commands

Note: It is recommended you use the web configurator to search for signatures.

Table 105 Signature Search Command

COMMAND

DESCRIPTION

idp search signature my_profile name quoted_string

Searches for signature(s) in a profile by the parameters

sid SID severity severity_mask platform platform_mask

specified. The quoted string is any text within the

policytype policytype_mask service service_mask

signature name in quotes, for example, [idp search

activate {any yes no} log {any no log log-

LAN_IDP name "WORM" sid 0 severity 0 platform 0

alert} action action_mask

policytype 0 service 0 activate any log any action]

 

searches for all signatures in the LAN_IDP profile

 

containing the text “worm” within the signature name.

 

 

idp search system-protect my_profile name

Searches for signature(s) in a system-protect profile by

quoted_string sid SID severity severity_mask platform

the parameters specified. The quoted string is any text

platform_mask policytype policytype_mask service

within the signature name in quotes, for example, [idp

service_mask activate {any yes no} log {any no

search LAN_IDP name "WORM" sid 0 severity 0 platform 0

log log-alert} action action_mask

policytype 0 service 0 activate any log any action]

 

searches for all signatures in the LAN_IDP profile

 

containing the text “worm” within the signature name.

 

 

show idp search signature my_profile name

Searches for signature(s) in a profile by the parameters

quoted_string sid SID severity severity_mask platform

specified. The quoted string is any text within the

platform_mask policytype policytype_mask service

signature name in quotes, for example, [idp search

service_mask activate {any yes no} log {any no

LAN_IDP name "WORM" sid 0 severity 0 platform 0

log log-alert} action action_mask

policytype 0 service 0 activate any log any action]

 

searches for all signatures in the LAN_IDP profile

 

containing the text “worm” within the signature name.

 

 

show idp search system-protect my_profile name

Searches for signature(s) in a system-protect profile by

quoted_string sid SID severity severity_mask platform

the parameters specified. The quoted string is any text

platform_mask policytype policytype_mask service

within the signature name in quotes, for example, [idp

service_mask activate {any yes no} log {any no

search LAN_IDP name "WORM" sid 0 severity 0 platform 0

log log-alert} action action_mask

policytype 0 service 0 activate any log any action]

 

searches for all signatures in the LAN_IDP profile

 

containing the text “worm” within the signature name.

 

 

22.3.6.1 Search Parameter Tables

The following table displays the command line severity, platform and policy type equivalent values. If you want to combine platforms in a search, then add their respective numbers together. For

 

189

ZyWALL (ZLD) CLI Reference Guide