See the following sections:
- direction (any | client-to-server
| server-to-client);
- [edit security idp custom-attack attack-name attack-type anomaly]
- [edit security idp custom-attack attack-name attack-type signature]
Statement introduced in Release 9.3 of JUNOS software.
Define the connection direction of the attack.
This statement is supported on SRX-series devices.
any—Detect the attack in either direction.
client-to-server—Detect the attack only in client-to-server traffic.
server-to-client—Detect the attack only in server-to-client traffic.
For configuration instructions and examples, see the JUNOS Software Security Configuration Guide.
security—To view this statement in the configuration.
security-control—To add this statement to the configuration.
-
direction {
-
values [any | client-to-server | exclude-any | exclude-client-to-server
|
-
exclude-server-to-client | server-to-client];
- }
- [edit security idp dynamic-attack-group
dynamic-attack-group-name filters]
Statement introduced in Release 9.3 of JUNOS software.
Specify a direction filter to add predefined attacks to the dynamic group based on the direction specified in the attacks.
This statement is supported on SRX-series devices.
values—Name of the direction filter. You can select from the following directions:
For configuration instructions and examples, see the JUNOS Software Security Configuration Guide.
security—To view this statement in the configuration.
security-control—To add this statement to the configuration.