Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

Guide That Contains This Content
[+] Expand All
[-] Collapse All

    Understanding Traffic Anomalies Rulebase Detection Settings

    The Traffic Anomalies rulebase detection setting is a toggle detection off and on.

    Specify Ignore to turn off traffic anomaly detection for traffic that matches the rule.

    Specify Detect to turn on detection for traffic that matches the rule and to configure detection settings.

    Tip: You can use two rules to protect a large number of servers. Configure rule 1 to match services you do not want to detect and set the detection option to Ignore. Configure rule 2 to match any traffic and set the detection option to Detect.

    Tip: In NSM, you can create address objects and service objects to facilitate configuration. One benefit of using objects is that you can configure them once and then use them in multiple rules. For details, see the NSM documentation.

    Published: 2011-02-08