Rule lookup by sid, Network settings, Snort network settings – RuggedCom RuggedRouter RX1100 User Manual

Page 278

Advertising
background image

33. Configuring the Intrusion Detection System

Revision 1.14.3

278

RX1000/RX1100™

Each rule can be individually enabled, disabled or deleted. Most rules will include a reference link to
more information about the vulnerability the rule detects.

It is possible to add your own rule, or one obtained from the open source community (e.g.

www.bleedingsnort.com

[http://www.bleedingsnort.com/]).

33.2.1.4. Rule Lookup by SID

The Look Up Rule button accepts a SID and displays its rule. You may elect to disable the rule or
learn more information about it.

33.2.2. Network Settings

Figure 33.5. Snort Network Settings

This menu allows you to configure the IP addresses and ports of servers in the local and external
network.

The Home Net field defaults to “ANY” and designates the IP subnet of any local ports on the router.
Configuring a specific subnet can reduce the number of alerts generated.

Advertising