HP VPN Firewall Appliances Attack Protection Configuration Guide

126
The aging time for an IDS blocking entry is five minutes. The timer restarts if the firewall receives an
SNMP trap with the same attack information before the timer expires.
A blocking entry is effective only to subsequent connections matching this entry. To make entries
apply to the current connections, disable the fast forwarding function of the firewall.
Disabling IDS collaboration removes the generated blocking entries from the firewall.