CHAPTER14 Security
Mediant 1000 Gateway & E-SBC | User's Manual
4. Click Apply.
Table 14-5: IDS Policies Table Parameter Descriptions
Parameter Description
'Index'
policy
[IDSPolicy_Index]
Defines an index number for the new table row.
Note: Each row must be configured with a unique index.
'Name'
rule
[IDSPolicy_Name]
Defines a descriptive name, which is used when associating the row in
other tables.
The valid value is a string of up to 40 characters.
Note: The parameter value cannot contain a forward slash (/).
'Description'
description
[IDSPolicy_
Description]
Defines a brief description for the IDS Policy.
The valid value is a string of up to 100 characters.
5. In the IDS Policies table, select the required IDS Policy row, and then click the IDS Rule link
located below the table; the IDS Rule table opens.
6. Click New; the following dialog box appears:
The figure above shows a configuration example: If 15 malformed SIP messages ('Reason') are
received within a period of 30 seconds ('Threshold Window'), a minor alarm is sent ('Minor-
Alarm Threshold'). Every 30 seconds, the rule’s counters are cleared ('Threshold Window'). If
more than 25 malformed SIP messages are received within this period, the device blacklists for
60 seconds the remote IP host ('Deny Threshold') from where the messages were received.
7. Configure an IDS Rule according to the parameters described in the table below.
8. Click Apply, and then save your settings to flash memory.
Table 14-6: IDS Rule Table Parameter Descriptions
Parameter Description
General
'Index'
rule-id
Defines an index number for the new table record.
- 146 -