beautypg.com

1 signature search example – ZyXEL Communications 5 Series User Manual

Page 278

background image

ZyWALL 5/35/70 Series User’s Guide

278

Chapter 14 Anti-Virus

14.4.1 Signature Search Example

This example shows a search for signatures that are enabled, set to generate logs and alerts,
send Windows messages and destroy the infected portion of the file.

Search

Click this button to begin the search. The results display in the table at the bottom
of the screen. Results may be spread over several pages depending on how broad
the search criteria selected were. The tighter the criteria selected, the fewer the
(relevant) signatures returned.

Configure
Signatures

The signature search results display in a table showing the SID, Name, Severity,
Attack Type, Platform, Service, Activation, Log, and Action criteria as selected in
the search. Click the SID column header to sort search results by SID.

Go to Page

Navigate between the pages of signature search results.

Name

This is the name of the anti-virus signature. Click the Name column heading to sort
your search results in ascending or descending order according to the rule name.

ID

This is the IDentification number of the anti-virus signature. Click the ID column
header to sort your search results by ID.

Active

Select Active to enable the anti-virus scanner for the selected signature. Select or
clear the check box in the column heading to select or clear the column’s check
boxes for all of the displayed anti-virus signatures.

Log

Select Log to create a log when packets match the signature. Select or clear the
check box in the column heading to select or clear the column’s check boxes for all
of the displayed anti-virus signatures.

Alert

This field is applicable only when you select Log.

Select Alert to create an alert when a virus is detected. Select or clear the check
box in the column heading to select or clear the column’s check boxes for all of the
displayed anti-virus signatures.

Send Windows
Message

Select this check box to set the ZyWALL to send a message alert to files’ intended
user(s) using Microsoft Windows computer connected to the protected interface.
Select or clear the check box in the column heading to select or clear the column’s
check boxes for all of the displayed anti-virus signatures.

Destroy File

Select this check box to set the ZyWALL to erase the infected portion of the file
before sending it. Once destroyed, you may not be able to open the file. Select or
clear the check box in the column heading to select or clear the column’s check
boxes for all of the displayed anti-virus signatures.

Apply

Click Apply to save your settings to the ZyWALL.

Reset

Click Reset to return to discard any unsaved changes that you have made in this
screen and return to the previously saved settings.

Table 83 SECURITY > ANTI-VIRUS > Signature: Query View (continued)

LABEL

DESCRIPTION