Smartdefense Network-Security Dos Flooding - D-Link NetDefend DFL-CP310 Cli Reference Manual

Internet security firewall
Hide thumbs Also See for NetDefend DFL-CP310:
Table of Contents

Advertisement

smartdefense network-security dos flooding

smartdefense network-security dos flooding

P
URPOSE
The
smartdefense network-security dos flooding
working with Non-TCP Flooding settings in the following ways:
• Configuring Non-TCP Flooding settings
• Displaying and exporting Non-TCP Flooding settings
Advanced firewalls maintain state information about connections in a State table.
In Non-TCP Flooding attacks, the attacker sends high volumes of non-TCP traffic.
Since such traffic is connectionless, the related state information cannot be cleared
or reset, and the firewall State table is quickly filled up. This prevents the firewall
from accepting new connections and results in a Denial of Service (DoS).
You can protect against Non-TCP Flooding attacks by limiting the percentage of
state table capacity used for non-TCP connections.
S
YNTAX
When used with
set
set smartdefense network-security dos flooding [enforce enforce] [log log] [percent
percent]
When used with
show
show smartdefense network-security dos flooding [enforce | log | percent]
296
:
:
variable is used for
D-Link NetDefend CLI Reference Guide

Advertisement

Table of Contents
loading

Table of Contents