282
01-28007-0144-20041217
Fortinet Inc.
Signature
IPS
Configuring predefined signatures
To enable or disable predefined signature groups
1
Go to
IPS > Signature > Predefined
.
2
Select the Configure icon next to the predefined signature group that you want to
enable or disable.
Figure 144:Enabling or disabling a predefined signature group
3
Select the enable box to enable the predefined signature group or clear the enable
box to disable the predefined signature group.
4
Select OK.
To configure predefined signature settings
1
Go to
IPS > Signature > Predefined
.
2
Select the blue triangle next to a signature group name to display the members of that
group.
3
Select the Configure icon for the signature you want to configure.
Figure 145:Configuring predefined IPS signatures
Reset Client
The FortiGate unit drops the packet that triggered the signature, sends a
reset to the client, and removes the session from the FortiGate session
table. Used for TCP connections only. If you set this action for non-TCP
connection based attacks, the action will behave as Clear Session. If the
Reset Client action is triggered before the TCP connection is fully
established it acts as Clear Session.
Reset Server
The FortiGate unit drops the packet that triggered the signature, sends a
reset to the server, and removes the session from the FortiGate session
table. Used for TCP connections only. If you set this action for non-TCP
connection based attacks, the action will behave as Clear Session. If the
Reset Server action is triggered before the TCP connection is fully
established it acts as Clear Session.
Drop Session
The FortiGate unit drops the packet that triggered the signature and drops
any other packets in the same session.
Clear Session
The FortiGate unit drops the packet that triggered the signature, removes
the session from the FortiGate session table, and does not send a reset.
Pass Session
The FortiGate unit lets the packet that triggered the signature and all other
packets in the session pass through the firewall.
Table 24: Actions to select for each predefined signature
Summary of Contents for FortiGate FortiGate-60M
Page 12: ...Contents 12 01 28007 0144 20041217 Fortinet Inc Index 369 ...
Page 44: ...44 01 28007 0144 20041217 Fortinet Inc Changing the FortiGate firmware System status ...
Page 74: ...74 01 28007 0144 20041217 Fortinet Inc FortiGate IPv6 support System network ...
Page 82: ...82 01 28007 0144 20041217 Fortinet Inc Dynamic IP System DHCP ...
Page 116: ...116 01 28007 0144 20041217 Fortinet Inc Access profiles System administration ...
Page 234: ...234 01 28007 0144 20041217 Fortinet Inc Protection profile Firewall ...
Page 246: ...246 01 28007 0144 20041217 Fortinet Inc CLI configuration Users and authentication ...
Page 278: ...278 01 28007 0144 20041217 Fortinet Inc CLI configuration VPN ...
Page 340: ...340 01 28007 0144 20041217 Fortinet Inc Using Perl regular expressions Spam filter ...
Page 358: ...358 01 28007 0144 20041217 Fortinet Inc CLI configuration Log Report ...
Page 376: ...376 01 28007 0144 20041217 Fortinet Inc Index ...