EasyManua.ls Logo

ZyXEL Communications USG310 - Page 1031

ZyXEL Communications USG310
1090 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Loading...
Chapter 50 Troubleshooting
ZyWALL USG Series User’s Guide
1031
Depending on your network topology and traffic load, binding every packet direction to an IDP profile
may affect the Zyxel Device’s performance. You may want to focus IDP scanning on certain traffic
directions such as incoming traffic.
IDP is dropping traffic that matches a rule that says no action should be taken.
The Zyxel Device checks all signatures and continues searching even after a match is found. If two or
more rules have conflicting actions for the same packet, then the Zyxel Device applies the more
restrictive action (reject-both, reject-receiver or reject-sender, drop, none in this order). If a packet
matches a rule for reject-receiver and it also matches a rule for reject-sender, then the Zyxel Device will
reject-both.
I uploaded a custom signature file and now all of my earlier custom signatures are gone.
The name of the complete custom signature file on the Zyxel Device is ‘custom.rules’. If you import a file
named ‘custom.rules’, then all custom signatures on the Zyxel Device are overwritten with the new file. If
this is not your intention, make sure that the files you import are not named ‘custom.rules’.
I cannot configure some items in IDP that I can configure in Snort.
Not all Snort functionality is supported in the Zyxel Device.
The Zyxel Device’s performance seems slower after configuring ADP.
Depending on your network topology and traffic load, applying an anomaly profile to each and every
packet direction may affect the Zyxel Device’s performance.
The Zyxel Device destroyed/dropped a file/email without notifying me.
Make sure you enable logs for your security settings, such as in the following screens:
Configuration > UTM Profile > IDP > Profile > Add
Configuration > UTM Profile > Anti-Virus > Profile: Profile Management > Add
Configuration > UTM Profile > Anti-Spam > Profile > Add
The Zyxel Device routes and applies SNAT for traffic from some interfaces but not from others.

Table of Contents

Other manuals for ZyXEL Communications USG310

Related product manuals