Download Print this page

Billion BIPAC-74x GE Series User Manual page 73

Bipac-74 series ge series router

Advertisement

BIPAC-74x Series Router – 741 GE, 741 GE V2.0 and 743 GE
Max PING Count: This is a threshold value to decide whether an ICMP Echo Storm is
occurring or not. Default value is 15 ICMP Echo Requests (PING) per second.
Max ICMP Count: This is a threshold to decide whether an ICMP flood is occurring or not.
Default value is 100 ICMP packets per seconds except ICMP Echo Requests (PING).
For SYN Flood, ICMP Echo Storm and ICMP flood, IDS will just warn the user in the Event
Log. It can not protect against such attacks.
Intrusion Name
Ascend Kill
WinNuke
Smurf
Land attack
Echo/CharGen Scan
Echo Scan
CharGen Scan
X'mas Tree Scan
IMAP
SYN/FIN Scan
SYN/FIN/RST/ACK
Scan
Net Bus Scan
Back Orifice Scan
SYN Flood
ICMP Flood
ICMP Echo
Src IP: Source IP
Dst Port: Destination Port
Chapter 3: Basic Installation and Configuration
Table 1: Hacker attack types recognized by the IDS
Detect Parameter Blacklist
Ascend Kill data
TCP
Port 135, 137~139,
Flag: URG
ICMP type 8
Des IP is broadcast
SrcIP = DstIP
UDP Echo Port and
CharGen Port
UDP Dst Port =
Echo(7)
UDP Dst Port =
CharGen(19)
TCP Flag: X'mas
TCP Flag: SYN/FIN
DstPort: IMAP(143)
SrcPort: 0 or 65535
TCP,
No Existing session
And Scan Hosts
more than five.
TCP
No Existing session
DstPort = Net Bus
12345,12346, 3456
UDP, DstPort =
Orifice Port (31337)
Max TCP Open
Handshaking Count
(Default 100 c/sec)
Max ICMP Count
(Default 100 c/sec)
Max PING Count
(Default 15 c/sec)
Type of
Block
Duration
Src IP
DoS
Src IP
DoS
Victim
Dst IP
Protection
Src IP
Scan
Src IP
Scan
Src IP
Scan
Src IP
Scan
Src IP
Scan
SrcIP
Scan
SrcIP
Scan
Src Port: Source Port
Dst IP: Destination IP
Drop
Show Log
Packet
Yes
Yes
Yes
Yes
Yes
Yes
Yes
Yes
Yes
Yes
Yes
Yes
Yes
Yes
Yes
Yes
Yes
Yes
Yes
Yes
Yes
Yes
Yes
Yes
Yes
Yes
Yes
69

Advertisement

loading

This manual is also suitable for:

Bipac-743 geBipac-741 ge v2.0