User`s guide

ZyWALL IDP 10 User’s Guide
Chapter 6 IDP Policies 68
6.4.1 Search Example
The following screen displays when you perform a search for the “Sasser” virus. It shows that
three policies for the virus have been found. If the search finds more polices than one page can
display, then click Search again to display the next page.
Action This field defines the action to be taken for a rule match. See Table 15 on page 65 for
details on actions.
You can change the specified default action for pre-defined rules. After you apply these
changes, your specified actions for pre-defined rules remain in effect even after you
update new rules or change modes (Inline to Monitor and back to Inline again).
An alarm is also an action to be taken on the policy, but you must select the Alarm
checkbox to have the ZyWALL send an alarm when a traffic flow matches a rule.
Policy ID This field displays a policy ID number that gives details on the intrusion and the policy
fix. Log in and subscribe to the advisories at mysecurity.com for more information.
Apply Click this button to save your changes back to the ZyWALL.
Reset Click this button to begin configuring this screen afresh.
Table 16 Selecting Pre-defined Policies (continued)
LABEL DESCRIPTION