Mitel 3000 Manual page 77

Broadband module
Hide thumbs Also See for 3000:
Table of Contents

Advertisement

Mitel 3000
Broadband Module Manual
Enter the following parameters
Use Blacklist
Use Victim Protection
Victim Protection Block
Duration
DOS Attack Block
Duration
Scan Attack Block
Duration
Scan Detection
Threshold
Scan Detection Period
Port Flood Detection
Threshold
Host Flood Detection
74
Enables or disables blacklisting of an external host if the
firewall has detected an intrusion from that host. Access is
denied to that host for 10 minutes.
Enables or disables the blocking of incoming broadcast Ping
commands for the period specified in Victim Protection Block
duration.
The period for which incoming broadcast Pings are blocked.
The default setting is 600 seconds.
If a Denial of Service attack is detected, traffic from that host
is blocked for the duration specified here. The default setting
is 1800 seconds.
If scan activity from a host attempting to identify open ports
is detected, traffic from that host is blocked for the duration
specified here. The default setting is 86400 seconds (1 day).
If the number of scanning packets counted within the Scan
Detection Period exceeds the value set here, a port scan
attack is detected. The default setting is 5 per second.
The duration that scanning type traffic is counted for. The
default setting is 60 seconds.
This is the maximum number of SYN packets that can be
received by a single port before a flood is detected. The
default setting is 10 per second.
This is the maximum number of SYN packets that can be

Advertisement

Table of Contents
loading

Table of Contents