TMS zl Management and Configuration Guide ST.1.2.100916

A-79
Command-Line Reference
Global Configuration Context
To configure HTTP protocol anomalies, enter the following command (you
can configure only one parameter at a time):
Syntax: ips protocol-anomaly http [header-size <header size> | header-line-size
<header line size> | uri-line-size <URI line size> | lines <number of lines>]
Replace <header size> with the maximum header size in bytes (100 to 5120).
Replace <header line size> with the maximum header line size in bytes (100
to 5120).
Replace <URI line size> with the maximum URI line size in bytes (1 to 3072).
Replace <number of lines> with the maximum number of lines (10 to 50).
MIME. You can configure the following MIME parameters:
Maximum header size
Boundaries
To configure MIME protocol anomalies, enter the following command (you
can configure only one parameter at a time):
Syntax: ips protocol-anomaly mime [header-size <header size> | boundaries <num-
ber of boundaries per message>]
Replace <header size> with the maximum header size in bytes (100–2048).
Replace <number of boundaries per message> with the maximum num-
ber of boundaries allowed per message (1–10).
SMTP. To configure the SMTP header size, enter the following command:
Syntax: ips protocol-anomaly smtp header-size <header size>
Replace <header size> with the maximum header size in bytes (100–2048).
ips signatures
With the ips signatures command, you can enable and disable specific signa-
tures, as well as update all of your signatures and set the update interval. You
can also enable and disable signatures according to threat level.
Note You cannot disable signatures in the Protocol Anomaly family. If you enter the
command to disable a signature in the Protocol Anomaly family, you will
receive a message that tells says you cannot disable signatures in that family.