Intrusion detection statistics, Overview, Displaying intrusion detection statistics – H3C Technologies H3C SecPath F1000-E User Manual
Page 652
1
Intrusion Detection Statistics
Overview
Intrusion detection is an important network security feature. By analyzing the contents and behaviors of
packets passing by, it can determine whether the packets are attack packets and take actions
accordingly as configured. Supported actions include outputting alarm logs, discarding packets, and
adding the attacker to the blacklist.
The intrusion detection statistics reflect the counts of attacks as per attack type, and the counts of attack
packets dropped, helping you analyze the intrusion types and quantities present to generate better
network security policies.
NOTE:
For information about packet inspection, see
Packet Inspection Configuration. For information about
traffic abnormality detection, see
Traffic Abnormality Detection Configuration.
Displaying Intrusion Detection Statistics
To view intrusion detection statistics, select Intrusion Detection > Statistics in the navigation tree to
enter the intrusion detection statistics page, as shown in
. You can select a zone, and then view
the counts of attacks and the counts of dropped packets in the security zone.
Figure 1 Intrusion detection statistics
describes the attack types.