Wanguard 6.2 User Guide
Configuration » Network & Policy » Response
FILTER PARAMETERS
1
Filter Name
String
{filter}
The Filter that detected the filtering rule.
2
Filter ID
Number
{filter_id}
The internal ID of the Filter that detected
the filtering rule.
3
Filter Type [
Packet Filter, Flow
Filter, Filter Cluster
]
String
{filter_type}
The type of Filter.
4
Filter Group
String
{filter_group}
The Device Group of the Filter.
5
Number of Filters
Number
{filters}
The number of Filter instances activated
for the anomaly.
6
Filters Pkts/s
Number*
{filters_pps}
The most recent packets/second
throughput recorded by active Filter(s) in
the abnormal traffic.
7
Filters Bits/s
Number*
{filters_bps}
The most recent bits/second throughput
recorded by active Filter(s) in the
abnormal traffic.
8
Filters Max Pkts/s
Number*
{filters_max_pps}
The maximum packets/second
throughput recorded by active Filter(s) in
the abnormal traffic.
9
Filters Max Bits/s
Number*
{filters_max_bps}
The maximum bits/second throughput
recorded by active Filter(s) in the
abnormal traffic.
10
Filtered Packets
Number*
{filters_filtered_packets}
The number of packets filtered by active
Filter(s).
11
Filtered Bits
Number*
{filters_filtered_bits}
The number of bits filtered by active
Filter(s).
12
Filters CPU Usage
Number
{filters_max_cpu_usage}
The maximum CPU% used by active
Filter(s) instance(s).
FILTERING RULE PARAMETERS
1
Filtering Rule #
Number
{filtering_rule_id}
A unique ID of the filtering rule.
2
Filtering Rule Type [
Source IP,
Src Port TCP, Src Port UDP,
Packet Length, Country, IP
Protocol...
]
String
{filtering_rule_type}
What kind of filtering rule. All possible
values are listed under Configuration »
General Settings » Mitigation Options.
3
Filtering Rule Value
String
{filtering_rule_value}
What should be filtered.
String
{filtering_rule_ip_dns}
If the filtering rule is for an IP, the
dynamic parameter provides the reverse
DNS of the IP.
4
Filtering Rule ISP
String
{filtering_rule_ip_isp}
If the filtering rule is for an IP, the
dynamic parameter provides
corresponding organization / ISP /
Autonomous System.
5
Filtering Rule Country
String
{filtering_rule_ip_country}
If the filtering rule is for an IP, it contains
the country the IP comes from.
6
Filtering Rule Pkts/s
Number*
{filtering_rule_pps}
The latest pkt/s throughput of the traffic
matched by the filtering rule.
7
Filtering Rule Bits/s
Number*
{filtering_rule_bps}
The latest bits/s throughput of the traffic
matched by the filtering rule.
8
Filtering Rule Peak Pkts/s
Number*
{filtering_rule_max_pps}
The maximum pkt/s throughput of the
traffic matched by the filtering rule.
- 32 -
Summary of Contents for wanguard 6.2
Page 1: ......