beautypg.com

Fortinet Network Device IPS User Manual

Page 30

background image

FortiGate IPS User Guide Version 3.0 MR7

30

01-30007-0080-20080916

Creating custom signatures

Custom signatures

Table 6: TCP header keywords

Keyword and Value

Description

--ack ;

Check for the specified TCP acknowledge

number.

--dst_port [!]{ |
: | : |
:};

The destination port number.
You can specify a single port or port range:

is a single port.

: includes the specified port and
all lower numbered ports.

: includes the specified port and
all higher numbered ports.

: includes the two
specified ports and all ports in between.

--seq ;

Check for the specified TCP sequence number.

--src_port [!]{ |
: | : |
:};

The source port number.
You can specify a single port or port range:

is a single port.

: includes the specified port and
all lower numbered ports.

: includes the specified port and
all higher numbered ports.

: includes the two
specified ports and all ports in between.