|
|
@ -470,7 +470,7 @@ flow, since one packet may match on several rules.
|
|
|
|
Verdict
|
|
|
|
Verdict
|
|
|
|
~~~~~~~
|
|
|
|
~~~~~~~
|
|
|
|
|
|
|
|
|
|
|
|
An object containning info on the final action that will be applied to a given
|
|
|
|
An object containing info on the final action that will be applied to a given
|
|
|
|
packet, based on all the signatures triggered by it and other possible events
|
|
|
|
packet, based on all the signatures triggered by it and other possible events
|
|
|
|
(e.g., a flow drop). For that reason, it is possible for an alert with
|
|
|
|
(e.g., a flow drop). For that reason, it is possible for an alert with
|
|
|
|
an action ``allowed`` to have a verdict ``drop``, in IPS mode, for instance, if
|
|
|
|
an action ``allowed`` to have a verdict ``drop``, in IPS mode, for instance, if
|
|
|
|