09.11.2015 Views

SURICATA

suricata_mixed_mode_2015

suricata_mixed_mode_2015

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

IPS MODE<br />

– Reject<br />

●<br />

●<br />

●<br />

●<br />

●<br />

This is an active rejection of the packet, both receiver and<br />

sender receive a reject packet.<br />

If the packet concerns TCP, it will be a reset-packet,<br />

otherwise it will be an ICMP-error packet for all other<br />

protocols.<br />

Suricata generates an alert too.<br />

In IPS mode, the packet will be dropped as in the drop action<br />

Reject in IDS mode is called IDPS

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!