
Chapter 22 IDP Commands
Table 84 Editing/Creating Anomaly Profiles (continued)
COMMAND | DESCRIPTION |
[no] | Activates or deactivates IP scan detection |
[alert] block} | options where |
| |
| |
| scan |
| |
| |
| logs or alerts and blocking. no deactivates IP |
| scan detection, its logs, alerts or blocking. |
[no] | Activates or deactivates ICMP scan detection |
options. Also sets ICMP | |
block} | alerts and blocking. no deactivates ICMP scan |
| detection, its logs, alerts or blocking. |
[no] | Activates or deactivates open port scan |
[alert] block} | detection options. Also sets open port scan- |
| detection logs or alerts and blocking. no |
| deactivates open port scan detection, its logs, |
| alerts or blocking. |
|
|
Sets for how many seconds the NXC blocks all | |
| packets from being sent to the victim |
| (destination) of a detected anomaly attack. |
|
|
[no] | Activates or deactivates TCP, UDP, IP or ICMP |
flood detection. Also sets flood detection logs | |
[alert] block} | or alerts and blocking. no deactivates flood |
| detection, its logs, alerts or blocking. |
[no] | Activates or deactivates |
| where |
| |
| |
| encoding |
| evasion |
| traversal |
| delimiter |
| |
| |
|
|
Sets | |
no | Deactivates |
[no] | Sets |
|
|
both}} |
|
[no] | Activates or deactivates tcp decoder options |
| where |
| offset |
| |
| options |
|
|
Sets tcp decoder log or alert options. | |
no | Deactivates tcp decoder log or alert options. |
[no] | Sets tcp decoder action |
| |
both}} |
|
[no] | Activates or deactivates udp decoder options |
|
150 |
| |
NXC CLI Reference Guide |
| |
|
|
|