18.07.2013 Views

Network Security Platform 7.0 IPS Administration Guide - McAfee

Network Security Platform 7.0 IPS Administration Guide - McAfee

Network Security Platform 7.0 IPS Administration Guide - McAfee

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

3<br />

如何管理 <strong>IPS</strong> 设置<br />

防火墙策略<br />

10 从“Show(显示)”下拉列表中选择“Service(服务)”。<br />

即会列出默认的服务规则对象。<br />

11 您可以从三个 L3 协议中选择任意一个:L3‑ICMP、L3‑TCP 和 L3‑UDP。<br />

图 3-125 设置 L3 ACL 协议<br />

L3 ACL 的 TCP 设置<br />

在配置了 L3 ACL 之后,应当将“TCP Flow Violation(TCP 流违规)”设置为“Permit out‑of‑order(允许乱序)”(默认设<br />

置)。<br />

在 Manager 中,选择“<strong>IPS</strong> Settings(<strong>IPS</strong> 设置)/ ” | “Advanced Scanning(高级扫描)” | “TCP Settings<br />

(TCP 设置)”。<br />

在“TCP Settings(TCP 设置)”页中,从“TCP Flow Violation(TCP 流违规)”下拉列表选择“Permit out‑of‑order(允<br />

许乱序)”。<br />

图 3-126 L3 ACL 的 TCP 流违规设置<br />

164 <strong>McAfee</strong> ® <strong>Network</strong> <strong>Security</strong> <strong>Platform</strong> <strong>7.0</strong> <strong>IPS</strong> 管理手册

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!