Advanced Options - Protection Policy - Dynamix UM-A User Manual

4/1 port
Hide thumbs Also See for UM-A:
Table of Contents

Advertisement

4.3.3.16.1.1 Advanced Options – Protection Policy
Protection Policies defend against common methods of attacking a network and computers within the
network. Some of these attacks are classified as a DoS (Denial of Service). DoS is an attack in which a
network or components of a network are disabled, usually by overloading traffic on the network, in
order to prevent authorized and legitimate users to access network resources.
Basic Protection:
IP Spoofing checking: IP spoofing is when an unauthorized user inserts the IP
address of an authorized user into the IP packets in order to gain access to a
network. Selecting this option will allow the firewall to check for and filter out this
discrepancy.
Ping of Death checking: Ping of Death is a type of DoS attack that uses a
malformed ICMP data packet that contains unusually large amounts of data that
causes TCP/IP to crash or behave irregularly. Enabling this will allow the firewall
to filter out packets containing Ping of Death properties.
Land Attack checking: Land attack is a type of DoS attack that works by sending
a spoofed packet containing the same source and destination IP address and port
(the victim's IP address). This packet contains a connection request, resulting in a
handshake process. At the end of the handshake, the victim sends out an ACK
(ACKnowledge) request. Since the source and the destination are the same, the
victim receives the ACK request it just sent out. The received data does not match
what the victim is expecting, so it retransmits the ACK request. This process
repeats until the network crashes. Enabling this will allow the firewall to filter out
possible Land Attack packets.
4/1 Port ADSL Router
P 103

Advertisement

Table of Contents
loading

Table of Contents