Cisco Systems IPS4510K9 Home Security System User Manual


 
B-21
Cisco Intrusion Prevention System Sensor CLI Configuration Guide for IPS 7.2
OL-29168-01
Appendix B Signature Engines
Atomic Engine
specify-routing-header {yes |
no}
(Optional) Enables inspection of the
routing header:
rh-present—Inspects the routing
header.
have-rh | no-rh
specify-traffic-class {yes | no} (Optional) Enables inspection of the traffic
class:
traffic-class—Specifies the value of
the traffic class to inspect.
0 to 255
IPV4
specify-ip-addr-options {yes |
no}
(Optional) Enables IP address options:
ip-addr-options—Specifies the IP
address options.
address-with-localhost
ip-addr
2
rfc-1918-address
src-ip-eq-dst-ip
specify-ip-header-length {yes |
no}
(Optional) Enables inspection of the IP
header length:
ip-header-length—Specifies the length
of the IP header to inspect.
0 to 16
specify-ip-id {yes | no} (Optional) Enables inspection of the IP
identifier:
ip-id—Specifies the IP ID to inspect.
0 to 255
specify-ip-option-inspection
{yes | no}
(Optional) Enables inspection of the IP
options:
ip-option-inspection—Specifies the
value of the IP option:
ip-option—IP OPTION code to
match.
ip-option-abnormal—The list of
options is malformed.
0 to 65535
specify-ip-payload-length {yes
| no}
(Optional) Enables inspection of the IP
payload length:
ip-payload-length—Specifies the
length of the IP payload to inspect.
0 to 65535
specify-ip-tos {yes | no} (Optional) Enables inspection of the IP
type of service:
ip-tos—Specifies the IP type of service
to inspect.
0 to 255
specify-ip-total-length {yes |
no}
(Optional) Enables inspection of the IP
total length:
ip-total-length—Specifies the total
length of the IP packet to inspect.
0 to 65535
Table B-8 Atomic IP Advanced Engine Parameters (continued)
Parameter Description Value