Alarmy które nie są pomijane w trybie IDS
Niektóre alarmy nie są pomijane nawet w trybie IDS. Należą do nich:
Alarmy IP:
9="Oversized fragment"
10="Overlapped fragment"
21="Land style attack"
33="Zero sized fragment received"
71="Broadcast address with TCP"
91="Possible attack on capacity"
93="Blacklisted address"
101="Quality of service drop"
102="IP fragment analyze"
210="Connection lost"
Alarmy ICMP:
67="Invalid ICMP message"
Alarmy TCP:
16="Wrong TCP sequence number"
20="Xmas tree attack"
97="Invalid TCP packet for current connection state"
99="Datatracking problem"
110="Unauthorized protocol detected"
211="TCP traffic desynchronization"
212="Handled by the synproxy"
213="Desynchronisation state for TCP traffic"