SecurityEvent
This textual convention is used to describe various security-related events and statistics on a firewall. other : Generic attack event. none : No attack is occurring, an informational event. dos : A denial of service attack has been detected. recon : A pattern of reconnaissance activity has been detected. pakFwd : A packet forwarding attack has been detected. addrSpoof : A spoofed address has been detected. svcSpoof : A spoofed service (eg., DNS) has been detected. thirdParty : This site is being used as a third-party for an attack on another network. For example, the 'smurf' attack or email spamming. complete : An attack has terminated invlPak : An invalid packet with attack characteristics has been detected. illegCmd : An illegal command has been found. policy : An attempt has reen made to violate a security policy.
Possible values
12 objects| Number | Name |
|---|---|
| 1 | other |
| 2 | none |
| 3 | dos |
| 4 | recon |
| 5 | pakFwd |
| 6 | addrSpoof |
| 7 | svcSpoof |
| 8 | thirdParty |
| 9 | complete |
| 10 | invalPak |
| 11 | illegCom |
| 12 | policy |