ADTRAN 5000 Series Command Reference Manual page 369

Adtran network device command reference guide
Table of Contents

Advertisement

Command Reference Guide
Invalid Traffic Pattern
Attacks that send TCP URG
packets
Falsified IP Header Attacks
Echo
Land Attack
Broadcast Source IP
Invalid TCP Initiation Requests
Invalid TCP Segment Number
IP Source Route Option
61200990L1-35E
Manually
AOS Firewall Response
Enabled?
Yes
Any TCP packets that have the URG flag set
are discarded by the firewall.
No
The firewall verifies that the packet's actual
length matches the length indicated in the IP
header. If it does not, the packet is dropped.
No
All UDP echo packets are discarded by the
firewall.
No
Any packets with the same source and
destination IP addresses are discarded.
No
Packets with a broadcast source IP address
are discarded.
No
TCP SYN packets that have ack, urg rst, or
fin flags set are discarded.
No
The sequence numbers for every active TCP
session are maintained in the firewall
session database. If the firewall received a
segment with an unexpected (or invalid)
sequence number, the packet is dropped.
No
All IP packets containing the IP source route
option are dropped.
Copyright © 2005 ADTRAN
Global Configuration Mode Command Set
Common
Attacks
Winnuke, TCP
XMAS Scan
Jolt/Jolt2
Char Gen
Land Attack
369

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents