Zyxel ZyWALL 1100 [373/829] The anomaly detection and prevention general screen

Zyxel ZyWALL 310 [373/829] The anomaly detection and prevention general screen
Chapter 21 Security Policy
ZyWALL/USG Series User’s Guide
373
Traffic Anomalies
Traffic anomaly policies look for abnormal behavior or events such as port scanning, sweeping or
network flooding. They operate at OSI layer-2 and layer-3. Traffic anomaly policies may be updated
when you upload new firmware.
Protocol Anomalies
Protocol anomalies are packets that do not comply with the relevant RFC (Request For Comments).
Protocol anomaly detection includes:
TCP Decoder
UDP Decoder
ICMP Decoder
Protocol anomaly policies may be updated when you upload new firmware.
Note: First, create an ADP profile in the In the Configuration > Security Policy > ADP
> Profile screen.
Then, apply the profile to traffic originating from a specific zone in the
Configuration > Security Policy > ADP > General screen.
21.5.1 The Anomaly Detection and Prevention General Screen
Click Configuration > Security Policy > ADP > General to display the next screen.
Figure 249 Configuration > Security Policy > ADP > General
The following table describes the labels in this screen.
Table 154 Configuration > Security Policy > ADP > General
LABEL DESCRIPTION
General Settings
Enable Anomaly Detection
and Prevention
Select this to enable traffic anomaly and protocol anomaly detection and
prevention.
Add Select an entry and click Add to append a new row beneath the one selected.
ADP policies are applied in order (Priority) shown in this screen

Содержание

Похожие устройства