Chapter 30 IDP
ZyWALL ATP Series User’s Guide
542
IDP Service Groups
An IDP service group is a set of related packet inspection signatures.
30.2.1 Query Example
This example shows a search with these criteria:
• Severity: Severe
• Classification Type: Misc
• Platform: Windows
• Service: Any
• Actions: Any
Virus/Worm
A computer virus is a small program designed to corrupt and/or alter the operation of
other legitimate programs. A worm is a program that is designed to copy itself from one
computer to another on a network. A worm’s uncontrolled replication consumes system
resources, thus slowing or stopping other tasks.
Web Attack
Web attacks refer to attacks on web servers such as IIS (Internet Information Services).
Table 219 IDP Service Groups
WEB_PHP WEB_MISC WEB_IIS
WEB_FRONTPAGE
WEB_CGI WEB_ATTACKS
TFTP
TELNET
SQL SNMP
SMTP
RSERVICES
RPC POP3 POP2
P2P
ORACLE NNTP
NETBIOS
MYSQL
MISC_EXPLOIT MISC_DDOS MISC_BACKDOOR MISC
IMAP IM
ICMP
FTP
FINGER DNS
n/a
Table 218 Policy Types (continued)
POLICY TYPE
DESCRIPTION