Hi,
I know this is a duplicate from the prior 7.8xx betas.
I have a number of IPS attacks UDP flood in the log file. Nothing shows on the dashboard or on the reporting graphs.
There are number of lines with similar info for both time periods as well as a later attack.
Ian M
2010:04:11-05:44:34 fw1-on-house ulogd[4313]: id="2105" severity="info" sys="SecureNet" sub="ips" name="UDP flood detected" action="UDP flood" fwrule="60013" initf="ppp0" srcip="213.154.235.74" dstip="210.84.9.137" proto="17" length="1308" tos="0x08" prec="0x20" ttl="57" srcport="3545" dstport="47262"
2010:04:11-16:41:54 fw1-on-house ulogd[4313]: id="2105" severity="info" sys="SecureNet" sub="ips" name="UDP flood detected" action="UDP flood" fwrule="60013" initf="ppp0" srcip="95.80.0.220" dstip="210.84.9.137" proto="17" length="1308" tos="0x08" prec="0x20" ttl="51" srcport="3548" dstport="47262"