HP VPN Firewall Appliances Attack Protection Configuration Guide
126
• The aging time for an IDS blocking entry is five minutes. The timer restarts if the firewall receives an
SNMP trap with the same attack information before the timer expires.
• A blocking entry is effective only to subsequent connections matching this entry. To make entries
apply to the current connections, disable the fast forwarding function of the firewall.
• Disabling IDS collaboration removes the generated blocking entries from the firewall.