Draytek Vigor3900 User Manual page 220

Multi-wan security appliance
Hide thumbs Also See for Draytek Vigor3900:
Table of Contents

Advertisement

Item
SYN Flood Threshold
SYN Flood Timeout
Block ICMP Flood
ICMP Flood Threshold
ICMP Flood Timeout
Block UDP Flood
UDP Flood Threshold
UDP Flood Timeout
Block Port Scan
Port Scan Threshold
Block IP Options
Block Land
Block SMURF
Block Trace Route
Block SYN Fragment
Block Fraggle
Block Tear Drop
Description
the user-defined timeout period.
The default setting for threshold is 2000 packets per second.
The default setting for timeout is 10 seconds.
Click Enable to activate the ICMP flood defense function.
If the amount of ICMP echo requests from the Internet
exceeds the user-defined threshold value, the router will
discard the subsequent echo requests within the user-defined
timeout period.
The default setting for threshold is 250 packets per second.
The default setting for timeout is 10 seconds.
Click Enable to activate the UDP flood defense function.
If the amount of UDP packets from the Internet exceeds the
user-defined threshold value, the router will be forced to
randomly discard the subsequent UDP packets within the
user-defined timeout period.
The default setting for threshold is 2000 packets per second.
The default setting for timeout is 10 seconds.
Click Enable to activate the Port Scan detection function.
Port scan sends packets with different port numbers to find
available services, which respond. The router will identify it
and report a warning message if the port scanning rate in
packets per second exceeds the user-defined threshold value.
The default threshold is 2000 pps (packets per second).
Click Enable to activate the Block IP options function. The
router will ignore any IP packets with IP option field
appearing in the datagram header.
Click Enable to activate the Block Land function. A Land
attack occurs when an attacker sends spoofed SYN packets
with identical source address, destination addresses and port
number as those of the victim.
Click Enable to activate the Block Smurf function. The
router will reject any ICMP echo request destined for the
broadcast address.
Click Enable to activate the Block Trace Route function.
Click Enable to activate the Block SYN fragment function.
Any packets having the SYN flag and fragmented bit sets
will be dropped.
Click Enable to activate the Block fraggle Attack function.
Any broadcast UDP packets received from the Internet are
blocked.
Click Enable to activate the Block Tear Drop function. This
attack involves the perpetrator sending overlapping packets
to the target hosts so that target host will hang once they
212
Vigor3900 Series User's Guide

Advertisement

Table of Contents
loading

Table of Contents