通用 设定组合
流量异常 协议异常

 

名称  
 
  扫描侦测

灵敏度
阻挡周期  (1-3600秒)
名称 启用日志动作
(open port) Open Port
(portscan) IP Decoy Protocol Scan
(portscan) IP Distributed Protocol Scan
(portscan) IP Filtered Decoy Protocol Scan
(portscan) IP Filtered Distributed Protocol Scan
(portscan) IP Filtered Protocol Scan
(portscan) IP Protocol Scan
(portscan) TCP Decoy Portscan
(portscan) TCP Distributed Portscan
(portscan) TCP Filtered Decoy Portscan
(portscan) TCP Filtered Distributed Portscan
(portscan) TCP Filtered Portscan
(portscan) TCP Portscan
(portscan) UDP Decoy Portscan
(portscan) UDP Distributed Portscan
(portscan) UDP Filtered Decoy Portscan
(portscan) UDP Filtered Distributed Portscan
(portscan) UDP Filtered Portscan
(portscan) UDP Portscan
(sweep) ICMP Filtered Sweep
(sweep) ICMP Sweep
(sweep) IP Filtered Protocol Sweep
(sweep) IP Protocol Sweep
(sweep) TCP Filtered Port Sweep
(sweep) TCP Port Sweep
(sweep) UDP Filtered Port Sweep
(sweep) UDP Port Sweep

  Flood检测

阻挡周期  (1-3600秒)
名称 启用日志动作临界值
(flood) ICMP Flood
(flood) IP Flood
(flood) TCP Flood
(flood) UDP Flood