Dos-Control Tcpflag; Dos-Control L4Port - D-Link DWL-8500AP Command Reference Manual

Dws-3000 series/ unified wired & wireless access system
Hide thumbs Also See for DWL-8500AP:
Table of Contents

Advertisement

no dos-control tcpfrag
This command disabled TCP Fragment Denial of Service protection.
Format
Mode

dos-control tcpflag

This command enables TCP Flag Denial of Service protections. If the mode is enabled, Denial
of Service prevention is active for this type of attacks. If packets ingress having TCP Flag
SYN set and a source port less than 1024 or having TCP Control Flags set to 0 and TCP
Sequence Number set to 0 or having TCP Flags FIN, URG, and PSH set and TCP Sequence
Number set to 0 or having TCP Flags SYN and FIN both set, the packets will be dropped if the
mode is enabled.
Default
Format
Mode
no dos-control tcpflag
This command sets disables TCP Flag Denial of Service protections.
Format
Mode

dos-control l4port

This command enables L4 Port Denial of Service protections. If the mode is enabled, Denial
of Service prevention is active for this type of attack. If packets ingress having Source TCP/
UDP Port Number equal to Destination TCP/UDP Port Number, the packets will be dropped if
the mode is enabled.
Some applications mirror source and destination L4 ports - RIP for example
NOTE:
uses 520 for both. If you enable dos-control l4port, applications such as RIP
may experience packet loss which would render the application inoperable.
Default
Format
Mode
no dos-control l4port
This command disables L4 Port Denial of Service protections.
Format
Mode
no storm-control broadcast all
Global Config
disabled
dos-control tcpflag
Global Config
no dos-control tcpflag
Global Config
disabled
dos-control l4port
Global Config
no dos-control l4port
Global Config
2 Switching Commands
Denial of Service Protection Commands
113

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Dwl-3500ap

Table of Contents