Enabling Action for Firewall
To enable or disable iSecurity Action for Firewall, select 7. Enable ACTION (CL Script + more) from the iSecurity (part I) Global Parameters screen (STRFW > 81).
The Enable Real-Time Detection screen appears:
Enable Real-Time Detection Real-time detection allows Action to react automatically to security events generated by Firewall and Screen. When enabled, these events are checked against pre-defined rules, which trigger alert messages and/or command scripts. Action must be installed and running in order to take advantage of this functionality. If Firewall is working in *FYI mode, Action will NOT perform its activity. Type options, press Enter. Enable ACTION for Firewall . . 1 4=By Server definition 1=Global override - Stop using ACTION 2=Global override - Send rejects 3=Global override - Send all Enable ACTION for Screen . . . N Y, N F3=Exit F12=Previous |
The Enable ACTION for Firewall field can take these numeric values:
- 1=Global override - Stop using ACTION: Sends no transaction messages to Action.
- 2=Global override - Send rejects: Only sends messages about rejected transactions to Action.
- 3=Global override - Send all: Sends messages about all transactions, either accepted or rejected, to Action.
- 4=By Server Definition: Action is enabled or disabled for each server independently. You can set this via the Modify Server Security screen, as shown in Modifying Firewall Settings for Servers.
These choices are only effective if Action is installed and running on your system.