This command is used to enable or disable attack id list logging feature that displays maximum of 5 detected attacks per connection that the Sensor processes. When it is enabled, the Sensor sends a list of attack ids to the Manager via packet logging framework.
Syntax:
set attackId list logging <enable|disable>
Note
To view the status of attack id list logging, you can execute the
show attackIdList logging statuscommand.
Default Value:
disable
Sample Output:
intruShell@NS-7200> set attackId list logging enable
Applicable to:
NS-Series and Virtual IPS Sensors