Intrusion Defense Firewall 1.2 User's Guide - Trend Micro? Online ...
Intrusion Defense Firewall 1.2 User's Guide - Trend Micro? Online ...
Intrusion Defense Firewall 1.2 User's Guide - Trend Micro? Online ...
Create successful ePaper yourself
Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.
Deep Packet Inspection<br />
Deep Packet Inspection<br />
Turn DPI on or off and set the Inline DPI behavior to "Prevent" or "Detect".<br />
When first applying a new set of DPI Rules you can choose to set the DPI behavior to "Detect". When in<br />
Detect mode, the DPI engine will apply all the same DPI Rules to traffic but instead of dropping packets, it<br />
will only log an Event and let the traffic pass. Use this behavior to ensure the new DPI Rules will not<br />
interfere with legitimate traffic.<br />
This setting only applies when the Network Engine is operating Inline; that is, live traffic is being streamed<br />
through the IDF network engine. The alternative to Inline mode is Tap mode, where the live traffic is<br />
cloned, and it is only this cloned traffic that is analyzed by the network engine. Prevent mode is impossible<br />
when in Tap mode because the network engine does not control the live traffic stream.<br />
To switch between Inline and Tap mode, go to System > System Settings > <strong>Firewall</strong> and DPI.<br />
Recommendations<br />
Client Plug-ins can be configured to perform regular Recommendation Scans which scan a Computer and<br />
make recommendations about the application of various Security Rules. Selecting this checkbox will<br />
automatically assign recommended rules to the Computer and automatically unassign rules that are not<br />
required.<br />
To turn the recommendation engine on or off, go to System > System Settings > Scan.<br />
© Copyright 2010 <strong>Trend</strong> <strong>Micro</strong> Inc. www.trendmicro.com<br />
All rights reserved. - 38 -