FortiGate NIDS is a real-time network intrusion detector that uses an attack definition library to detect and prevent a variety of suspicious network traffic and direct network attacks. FortiGate NIDS can log events and send alarm emails to system administrators.
About this manual
This manual describes the FortiGate Network Intrusion Detection System (NIDS), including its detection capabilities for DoS attacks, protocol analysis, and logging. It outlines the supported network services such as NTP, POP3, SMTP, SNMP, SSH, SSL, TCP, and UDP.
The document also provides command‑line examples for configuring the system, setting operation modes, restoring configuration files, and viewing firewall IP/MAC bindings. An index of NIDS topics and related features helps users locate specific information quickly.
What's inside
- NIDS
- DoS Attack Types
- System Operation Modes
- Configuration Commands
- IP/MAC Binding
- NTP
- POP3
- SMTP
- SNMP
- SSH
Frequently asked questions
How do I set the system operation mode?
Use the command set system opmode {nat | transparent} to select NAT or transparent mode.
How do I view the firewall IP/MAC binding table?
Enter get firewall ipmacbinding [dhcpipmac] to display the current IP/MAC bindings.