NGFW Command Line Interface Reference 159
Aggressive "Offers a more aggressive security posture that may require tuning
based upon specific application protocol usage."
Core "Recommended for deployment in the network core."
Edge "Recommended for deployment in a Server Farm/DMZ."
Perimeter "Recommended for deployment at an Internet entry point."
NGFW{running-ips}display-categoryrules
Display category rules for all profiles.
Syntax
display-categoryrules
Example
NGFW{running-ips}display-categoryrules ?
category "Streaming Media" enabled actionset "Recommended"
category "Identity Theft" enabled actionset "Recommended"
category "Virus" enabled actionset "Recommended"
category "Spyware" enabled actionset "Recommended"
category "IM" enabled actionset "Recommended"
category "Network Equipment" enabled actionset "Recommended"
category "Traffic Normalization" enabled actionset "Recommended"
category "P2P" enabled actionset "Recommended"
category "Vulnerabilities" enabled actionset "Recommended"
category "Exploits" enabled actionset "Recommended"
category "Reconnaissance" enabled actionset "Recommended"
category "Security Policy" enabled actionset "Recommended"
NGFW{running-ips}gzip-decompression
Sets GZIP decompression mode.
Syntax
gzip-decompression (enable|disable)
Example
NGFW{running-ips}gzip-decompression enable
NGFW{running-ips}profile
Allows you to create or enter an IPS profile.
Syntax
profile PROFILENAME
Example
NGFW{running-ips}profile myprofile
NGFW{running-ips}quarantine-duration
Sets quarantine duration.
Syntax
quarantine-duration DURATION
DURATION value between 1 to 1440 minutes
Comentarios a estos manuales