Buradasın
FortiGate IPS Configuration Guide
petenetlive.com/kb/article/0001783Yapay zekadan makale özeti
- Licensing and Setup
- IPS requires a specific license, available in Enterprise Protection and other subscription tiers
- IPS status can be verified in Dashboard > Status > Licences
- Malicious URLs feature uses local database for drive-by exploit detection
- IPS Signature Configuration
- Signatures are categorized by severity (green to red) and target (server/client)
- Default actions are to block or pass, with CVE-IDs available for each signature
- Custom profiles can be created for specific servers and operating systems
- Implementation and Testing
- IPS can be enabled in any firewall policy by adding the appropriate policy
- Packet logging is enabled by default for IPS profile inspection
- IPS blocks instantly but logs appear after a few minutes
- Suspicious URLs feature blocks URLs from last one month and three months