D-Link DFL-2400 [96/112] Figure 8 17 the screen of number of attack events

D-Link DFL-2400 [96/112] Figure 8 17 the screen of number of attack events
DFL-2100/DFL-2400 Intrusion Detection System User Manual
8
6
Figure 8-17: The screen of number of attack events
Serial number: the serial number of attacks.
Attack name: the name of this attack.
Host name: The names of attacked hosts pre-defined on the address list.
Attacked IP address: the attacked IP address
Number of packet: the number of packets accepted by this attack.
Starting time: the time this attack begins.
Finishing time: the time this attack ends.
When user double clicks the content of this form, user will be able to analyze the
packet content of this attack. DFL-2100/ DFL-2400 IDS Reporting System not only
provides the entire network safety status to system manager, but also instinctively gets
a detailed and comprehensive network intrusion records to handle network crisis well.
Figure 8-18: The analysis screen of attack packet.
Serial number of packet: the serial numbers of packets.
Event time: the event begins.
Packet attacking time: the time when packets are received.
Protocol: the protocol type of a packet. The protocol might be TCP, UDP, ICMP,
or IGMP.
Double click on a certain packet, and then the system will analyze this packet
and display each field in a tree structure. (Refer to Figure 8-18.)

Содержание

Скачать