You can configure signature-based attacks by using Hyperscan extended parameters. By setting optimal values for the Hyperscan extended parameters, you can enhance the attack pattern matching process significantly.
To configure the extended parameters, include the optional-parameters option at the [edit security idp custom-attack attack-name attack-type signature] hierarchy level. You can configure the following parameters under the optional-parameters option:
| Product / Application | Software | Introduced Release |
|---|---|---|
| vSRX | Junos OS | 19.1R1 |
| cSRX | cSRX | 20.2R1 |
| SRX300 | Junos OS | 19.1R1 |
| SRX320 | Junos OS | 19.1R1 |
| SRX340 | Junos OS | 19.1R1 |
| SRX345 | Junos OS | 19.1R1 |
| SRX380 | Junos OS | 20.1R1 |
| SRX550 HM | Junos OS | 19.1R1 |
| SRX1500 | Junos OS | 19.1R1 |
| SRX1600 | Junos OS | 23.4R1 |
| SRX2300 | Junos OS | 23.4R1 |
| SRX4100 | Junos OS | 19.1R1 |
| SRX4120 | Junos OS | 25.2R1 |
| SRX4200 | Junos OS | 19.1R1 |
| SRX4300 | Junos OS | 24.2R1 |
| SRX4600 | Junos OS | 19.1R1 |
| SRX4700 | Junos OS | 24.4R1-S2 |
| SRX5400 | Junos OS | 19.1R1 |
| SRX5600 | Junos OS | 19.1R1 |
| SRX5800 | Junos OS | 19.1R1 |