SecurityEvent

  • Base type Enumeration

This textual convention is used to describe various security-related events and statistics on a firewall. other : Generic attack event. none : No attack is occurring, an informational event. dos : A denial of service attack has been detected. recon : A pattern of reconnaissance activity has been detected. pakFwd : A packet forwarding attack has been detected. addrSpoof : A spoofed address has been detected. svcSpoof : A spoofed service (eg., DNS) has been detected. thirdParty : This site is being used as a third-party for an attack on another network. For example, the 'smurf' attack or email spamming. complete : An attack has terminated invlPak : An invalid packet with attack characteristics has been detected. illegCmd : An illegal command has been found. policy : An attempt has reen made to violate a security policy.

Possible values

12 objects
Number Name
1 other
2 none
3 dos
4 recon
5 pakFwd
6 addrSpoof
7 svcSpoof
8 thirdParty
9 complete
10 invalPak
11 illegCom
12 policy