HP VPN Firewall Appliances Attack Protection Configuration Guide

127
Configuring advanced security protection
Advanced security protection can be configured only in the Web interface.
When the device is operating in UTM mode, the device provides advanced security protection functions
such as IPS, AV, content monitoring, bandwidth management, protocol audit, and URL filtering, and
basic security functions such as VPN and firewall. For more information about the system operating
modes, see Getting Started Guide.
Configuration guidelines
When you configure advanced security protection, follow these guidelines:
Advanced security protection cannot be configured in Management, Any, or Local zones.
Advance security protection policies (IPS, antivirus, content monitoring, bandwidth management,
protocol audit, and URL filtering) cannot be configured on virtual devices.
Advanced security protection logs (IPS, antivirus, content monitoring, bandwidth management,
protocol audit, and URL filtering) do not contain virtual device information, system logs, and host
logs about IPv6 and VPN instances.
Advanced security protection does not support processing fragmented packets.
Time tables
Feature and hardware compatibility
Hardware Time table
com
p
atibilit
y
F1000-A-EI/F1000-E-SI/F1000-S-AI Yes
F1000-C-G/F1000-S-G/F1000-A-G Yes
F1000-E No
F1000-S-EI No
F100-C-G/F100-S-G Yes
F100-M-G/F100-A-G/F100-E-G Yes
F5000-A5 No
F5000-S/F5000-C No
Firewall modules No
U200-A/U200-M/U200-CA Yes
U200-S/U200-CS/U200-CM Yes