Dos Attack Prevention Settings - D-Link DGS-3000 Series Reference Manual

Hide thumbs Also See for DGS-3000 Series:
Table of Contents

Advertisement

DoS Attack Prevention Settings

This window is used to configure the Denial-of-Service (DoS) attach prevention settings.
To view this window, click Security > DoS Attack Prevention Settings as shown below:
The fields that can be configured are described below:
Parameter
Land Attack
Blat Attack
TCP Tiny Frag Attack
TCP Null Scan
TCP Xmascan
TCP SYNFIN
TCP SYN Src Port Less
1024
Ping Death Attack
All
State
Action
DoS Trap State
DoS Log State
Click the Apply button to accept the changes made for each individual section.
Click the
View Detail
link to view more information regarding the specific entry.
After clicking the
View Detail
DGS-3000 Series Gigabit Ethernet Switch Web UI Reference Guide
Figure 8-79 DoS Attack Prevention Settings window
Description
Tick to check whether the source address is equal to destination address of a received
IP packet.
Tick check whether the source port is equal to destination port of a received TCP
packet.
Tick to check whether the packets are TCP tiny fragment packets.
Tick to check whether a received TCP packet contains a sequence number of 0 and
no flags
Tick to check whether a received TCP packet contains URG, Push and FIN flags.
Tick to check whether a received TCP packet contains FIN and SYN flags.
Tick to check whether the TCP packets source ports are less than 1024 packets.
Tick to detect whether received packets are fragmented ICMP packets.
Tick to select all DoS attack types.
Select to enable or disable DoS attack prevention.
Select the action to be taken when detecting the attack.
Select to enable or disable DoS prevention trap state.
Select to enable or disable DoS prevention log state.
link, the following window will appear:
273

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents