Displaying intrusion detection statistics, Overview, Configuration procedure – H3C Technologies H3C SecPath F1000-E User Manual
Page 49
41
Displaying intrusion detection statistics
The intrusion detection configuration is available only in the Web interface.
Overview
Intrusion detection is an important network security feature. By analyzing the contents and behaviors of
packets passing by, it can determine whether the packets are attack packets and take actions
accordingly as configured. Supported actions include outputting alarm logs, discarding packets, and
adding the attacker to the blacklist.
The intrusion detection statistics reflect the counts of attacks as per attack type, and the counts of attack
packets dropped, helping you analyze the intrusion types and quantities present to generate better
network security policies.
NOTE:
For information about packet inspection, see "Configuring packet inspection." For information about
traffic abnormality detection, see "Configuring traffic abnormality detection."
Configuration procedure
To view intrusion detection statistics, select Intrusion Detection > Statistics in the navigation tree to enter
the intrusion detection statistics page, as shown in
. Select a zone to view the counts of attacks
and the counts of dropped packets in the security zone.
describes the attack types.
- H3C SecPath F5000-A5 Firewall H3C SecPath F1000-A-EI H3C SecPath F1000-E-SI H3C SecPath F1000-S-AI H3C SecPath F5000-S Firewall H3C SecPath F5000-C Firewall H3C SecPath F100-C-SI H3C SecPath F1000-C-SI H3C SecPath F100-A-SI H3C SecBlade FW Cards H3C SecBlade FW Enhanced Cards H3C SecPath U200-A U200-M U200-S H3C SecPath U200-CA U200-CM U200-CS