D-Link DFL-2400 [11/112] Ntroduction

D-Link DFL-2400 [11/112] Ntroduction
DFL-2100/DFL-2400 Intrusion Detection System User Manual
1
1
1 INTRODUCTION
What is DFL-2100/DFL-2400?
DFL-2100/DFL-2400 is an active and on-line Network-based Intrusion Detection
System (NIDS). Its responsibility is to detect malicious and suspicious packets on
computer network and take actions in real time. It analyzes the incoming and outgoing
packets with a mixed approach combined with misused and anomaly model. With this
hybrid mechanism, DFL-2100/DFL-2400 can detect unknown type packet flooding and
extend the ability to detect new pattern-based attack type easily, since a flexible rule-
set is provided that new policies can be added easily. DFL-2100/DFL-2400 is built on
real-time OS equipped with high performance appliance enables us to do much more
than other software-based IDS.
Key Features
Real-time detection and reaction:
Detect the validity of packets in great performance
The ability of instant traffic control: block packets, cut off connections, generate
alarm and log suspicious packets.
Complete packet inspection.
Robustness:
Based on dedicated Real-Time OS with strengthen TCP/IP protocol stack, DFL-
2100/DFL-2400 minimizes the risk of being attacked and maximizes the durability.
Policy based detection and access control:
Policy based detection rules with schedule function support.
Prioritized Policy.
Bi-directional detection and protection.
Layer 3 and Layer 4 are under control, and specially enhance the URL detection
and access control.
Manageability:
Web based management interface: the administrator can take advantage of the
simplicity of user interface to manage DFL-2100/DFL-2400
Using policy server, administrators can control DFL-2100/DFL-2400 anywhere
anytime via web browser.
Standard RS232 console port.
Remote Telnet control support.
SNMP aware.
Remote kernel updates support.
Extensibility:

Содержание

Скачать