Billion BiPAC 8500/8520 User Manual page 95

Shdsl vpn firewall bridge/ router, shdsl.bis (vpn) firewall bridge/router
Table of Contents

Advertisement

(PING).
For SYN Flood, ICMP Echo Storm and ICMP flood, IDS will just warn the user in the Event Log.
It cannot protect against such attacks. Table 2: Types of Hacker attack recognized by the IDS.
1
Ascend Kill
WinNuke
Smurf
Land attack
Echo/CharGen
Scan
Echo Scan
CharGen Scan
X'mas Tree Scan
IMAP
SYN/FIN Scan
SYN/FIN/RST/ACK
Scan
Net Bus Scan
Back Orifice Scan
SYN Flood
Chapter 4: Configuration
Billion BiPAC 8500/8501/8520/8521 SHDSL (VPN) Firewall Bridge/ Router
Detect
Blacklist
Parameter
Ascend Kill data
Src IP
TCP
Port 135,
Src IP
137~139, Flag:
URG
ICMP type 8
Des IP is
Dst IP
broadcast
SrcIP = DstIP
UDP Echo Port
and CharGen
Port
UDP Dst Port =
Src IP
Echo(7)
UDP Dst Port =
Src IP
CharGen(19)
TCP Flag:
Src IP
X'mas
TCP Flag:
SYN/FIN
DstPort:
Src IP
IMAP(143)
SrcPort: 0 or
65535
TCP,
No Existing
session And
Src IP
Scan Hosts
more than five.
TCP
No Existing
session
DstPort = Net
SrcIP
Bus
12345,12346,
3456
UDP, DstPort =
Orifice Port
SrcIP
(31337)
Max TCP Open
Handshaking
Count (Default
100 c/sec)
Type of
Drop
Block
Packet
Duration
DoS
Yes
DoS
Yes
Victim
Yes
Protection
Yes
Yes
Scan
Yes
Scan
Yes
Scan
Yes
Scan
Yes
Scan
Yes
Scan
Yes
Scan
Yes
Show Log
Yes
Yes
Yes
Yes
Yes
Yes
Yes
Yes
Yes
Yes
Yes
Yes
Yes
91

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents

Save PDF