The Alarm Center collects network attacks and risk events detected by the Intrusion Defense module and Network Honeypot module, enabling users to understand firewall protection status for timely alerts. It supports blocking malicious access sources. Based on firewall actions, events are categorized into attack alarm summaries, attack intercepted statistics, and attack deception events.
Attack alarm summaries: includes all detected network attacks and risk events of the observed type (requiring manual blocking/allowing/quarantining/ignoring of attack IP addresses by users).
Attack intercepted statistics: includes all network attacks and risk events that are detected as threats and automatically blocked (used for subsequent audit and troubleshooting).
Attack deception events: includes all detected network attacks and risk events on exposed probes and honeypots (can be manually set to block or allow).
Information of Version Support
CFW supports the Alarm Center feature in all editions. For billing details, see Billing Overview. References
For the legacy Alarm Center, see the following documents: