Configuring Session Limits - Cisco ISA550 Administration Manual

Isa500 series integrated security appliances
Hide thumbs Also See for ISA550:
Table of Contents

Advertisement

Firewall

Configuring Session Limits

STEP 5
STEP 6
Configuring Session Limits
STEP 1
STEP 2
Cisco ISA500 Series Integrated Security Appliances Administration Guide
Block Multicast Packets: Check this box to block multicast packets. By
default, the firewall blocks all multicast packets. This feature has higher
priority than the firewall rules, which indicates that the firewall rules that
permit multicast traffic will be overridden if you enable this feature.
In the DoS Attacks area, enter the following information:
SYN Flood Detect Rate: Enter the maximum number of SYN packets per
second that will cause the security appliance to determine that a SYN Flood
Intrusion is occurring. Enter a value from 0 to 65535 SYN packets per second.
The default value is 128 SYN packets per seconds. A value of zero (0)
indicates that the SYN Flood Detect feature is disabled.
Echo Storm: Enter the number of pings per second that will cause the
security appliance to determine that an echo storm intrusion event is
occurring. Enter a value from 0 to 65535 ping packets per second. The
default value is 15 ping packets per seconds. A value of zero (0) indicates
that the Echo Storm feature is disabled.
ICMP Flood: Enter the number of ICMP packets per second, including PING
packets, that will cause the security appliance to determine that an ICMP
flood intrusion event is occurring. Enter a value from 0 to 65535 ICMP
packets per second. The default value is 100 ICMP packets per seconds. A
value of zero (0) indicates that the ICMP Flood feature is disabled.
NOTE: When one of DoS attack levels is exceeded, that kind of traffic will be
dropped.
Click Save to apply your settings.
Use the Session Limits page to configure the maximum number of connection
sessions. When the connection table is full, the new sessions that access the
security appliance are dropped.
Click Firewall > Session Limits.
Enter the following information:
Current All Connections: Displays the total number of current connections.
Click Disconnect All to clean up all connected sessions.
6
240

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Isa550wIsa570Isa570w

Table of Contents