Version 7.2 179 Mediant 1000B Gateway & E-SBC
User's Manual 13. Security
Parameter Description
The valid value is a string of up to 40 characters.
Description
description
[IDSPolicy_Description]
Defines a brief description for the IDS Policy.
The valid value is a string of up to 100 characters.
5. In the IDS Policies table, select the required IDS Policy row, and then click the IDS
Rule link located below the table; the IDS Rule table opens.
6. Click New; the following dialog box appears:
Figure 13-6: IDS Rule Table - Add Dialog Box
The figure above shows a configuration example: If 15 malformed SIP messages
('Reason') are received within a period of 30 seconds ('Threshold Window'), a minor
alarm is sent ('Minor-Alarm Threshold'). Every 30 seconds, the rule’s counters are
cleared ('Threshold Window'). If more than 25 malformed SIP messages are received
within this period, the device blacklists for 60 seconds the remote IP host ('Deny
Threshold') from where the messages were received.
7. Configure an IDS Rule according to the parameters described in the table below.
8. Click Apply, and then save your settings to flash memory.
9. For example
Table 13-4: IDS Rule Table Parameter Descriptions
Parameter Description
General
Index
rule-id
[IDSRule_RuleID]
Defines an index number for the new table record.
Reason
reason
[IDSRule_Reason]
Defines the type of intrusion attack (malicious event).
[0] Any = All events listed below are considered as attacks
and are counted together.