Cisco Systems IPS 7.1 Home Security System User Manual


  Open as PDF
of 1042
 
B-21
Cisco Intrusion Prevention System CLI Sensor Configuration Guide for IPS 7.1
OL-19892-01
Appendix B Signature Engines
Atomic Engine
specify-traffic-class {yes | no} (Optional) Enables inspection of the traffic
class:
traffic-class—Specifies the value of the
traffic class to inspect.
0 to 255
IPV4
specify-ip-addr-options {yes |
no}
(Optional) Enables IP address options:
ip-addr-options—Specifies the IP address
options.
address-with-localh
ost
ip-addr
2
rfc-1918-address
src-ip-eq-dst-ip
specify-ip-header-length {yes |
no}
(Optional) Enables inspection of the IP header
length:
ip-header-length—Specifies the length of
the IP header to inspect.
0 to 16
specify-ip-id {yes | no} (Optional) Enables inspection of the IP
identifier:
ip-id—Specifies the IP ID to inspect.
0 to 255
specify-ip-option-inspection
{yes | no}
(Optional) Enables inspection of the IP
options:
ip-option-inspection—Specifies the value
of the IP option:
ip-option—IP OPTION code to
match.
ip-option-abnormal—The list of
options is malformed.
0 to 65535
specify-ip-payload-length {yes
| no}
(Optional) Enables inspection of the IP
payload length:
ip-payload-length—Specifies the length
of the IP payload to inspect.
0 to 65535
specify-ip-tos {yes | no} (Optional) Enables inspection of the IP type of
service:
ip-tos—Specifies the IP type of service to
inspect.
0 to 255
specify-ip-total-length {yes |
no}
(Optional) Enables inspection of the IP total
length:
ip-total-length—Specifies the total length
of the IP packet to inspect.
0 to 65535
specify-ip-ttl {yes | no} (Optional) Enables inspection of the IP
time-to-live:
ip-ttl—Specifies the value of the IP TTL
to inspect.
0 to 255
Table B-8 Atomic IP Advanced Engine Parameters (continued)
Parameter Description Value