Sapido We-1120 BT Ultimate User Manual page 66

Nes mini server router with bt
Table of Contents

Advertisement

Service (DoS) attacks, Ping of Death (illegal ping packet sizes or excessive ICMP
messages), SYN Flood, LAND Attack, and IP Spoofing. Enable it if you need.
3. Blocking ICMP Ping from WAN Side: The purpose of ICMP is to provide feedback
regarding the network and datagram, it is not to make IP a reliable transport
mechanism. ICMP messages use a basic IP datagram header with the IP data being
the ICMP message. The IP source address is that of the host or gateway sending the
ICMP message with the destination IP address being that of the original source IP
address. You can enable ICMP Ping from WAN side or not.
4. DoS Attacks Blocking Settings
Enable DoS Attacks Blocking: The following sections will explain in more detail
about DoS Defense setup by using the web configurator. There are a total 8 kinds of
defense function for the DoS Defense Setup. By default, the DoS Defense
functionality is disabled. Further, once the DoS Defense functionality is enabled, the
default values for the threshold and timeout values existing in some functions are
set to 300 packets per second and 10 seconds, respectively. A brief description for
each item in the DoS defense function is shown below.
SYN Flooding: Check or uncheck this option to enable or disable protection
against SYN Flood attacks. This attack involves sending connection requests to a
server, but never fully completing the connections. This will cause some computers
to get into a "suck state" where they cannot accept connections from legitimate
66

Advertisement

Table of Contents
loading

This manual is also suitable for:

Ultimate we-1120

Table of Contents