SMC Networks SMC7004ABR manual DoS Criteria and Port Scan Criteria, Parameter Defaults Description

Page 62

Configuring the Barricade Router

Connection Policy – Enter the appropriate values for TCP/ UDP sessions as described in the following table.

Parameter

Defaults

Description

Fragmentation

10 sec

Configures the number of seconds

half-open wait

 

that a packet state structure

 

 

remains active. When the timeout

 

 

value expires, the router drops the

 

 

unassembled packet, freeing that

 

 

structure for use by another packet.

TCP SYN wait

30 sec

Defines how long the software will

 

 

wait for a TCP session to

 

 

synchronize before dropping the

 

 

session.

TCP FIN wait

5 sec

Specifies how long a TCP session

 

 

will be maintained after the firewall

 

 

detects a FIN packet.

TCP connection

3600

The length of time a TCP session

idle timeout

seconds

will be maintained if there is no

 

(1 hour)

activity.

UDP session idle

30 sec

The length of time a UDP session

timeout

 

will maintained if there is no activity.

 

 

 

H.323 data

180 sec

The length of time an H.323

channel idle

 

session will be maintained if there

timeout

 

is no activity.

 

 

 

DoS Criteria and Port Scan Criteria

Set up DoS and port scan criteria in the spaces provided (as shown below).

Parameter

Defaults

Description

Total incomplete TCP/

300 sessions

Defines the rate of newly

UDP sessions HIGH

 

unestablished sessions that

 

 

will cause the software to

 

 

start deleting half-open

 

 

sessions.

 

 

 

54

Image 62
Contents C 7 0 0 4 a B R Page BarricadeTM Broadband Router User Guide Copyright FCC Class B Industry Canada Class BCompliances EC Conformance Declaration Class BTable of Contents Configuring the Print Server LED Indicators About Barricade RouterFeatures and Benefits About the Barricade RouterInstalling the Router Installing the Router Hardware DescriptionHardware Description Front and Rear PanelsSystem Requirements LANConnect the System Basic Installation ProcedureConnect the System Internet Installing TCP/IP Windows 95/98/MEConfiguring Client TCP/IP WindowsSetting Up TCP/IP Setting Up TCP/IPConfiguring Your Computer in Windows 95/98/Me Setting Up TCP/IP Obtain IP Settings from Your Barricade Router Configuring Your Computer in Windows NT Configuring Client TCP/IP Configuring Your Computer in Windows Configuring Your Computer in Windows XP Configuring a Macintosh Computer Configuring Your Computer in Windows Setting Up TCP/IP Manual IP Configuration Verifying Your TCP/IP Connection Pinging 192.168.2.1 with 32 bytes of data Request timed out Configuring Barricade Router Browser ConfigurationInternet Explorer 5 or above Disable Proxy ConnectionConfiguring the Barricade Router Internet Explorer For MacintoshNetscape 4 or above Navigating the Web Browser Interface Setup WizardMaking Configuration Changes Time ZoneSetup Wizard Broadband TypeCable Modem Fixed-IP xDSLPPPoE Advanced Setup Menu DescriptionTime Zone Advanced SetupSystem Password Settings WAN Remote ManagementDynamic IP Point-to-Point Over Ethernet PPPoE Point-to-Point Tunneling Protocol Pptp Static IP Address DNS Dial-up LAN Network Address Translation NAT Address Mapping Virtual Server Special Applications Access Control FirewallMAC Filtering Table URL Blocking Schedule Rule Intrusion Detection Discard Ping from WAN Default Disabled SPI and Anti-DoS firewall protection Default EnabledRIP Defect Default Enabled If an RIP request packet is Advanced Setup Parameter Defaults Description DoS Criteria and Port Scan CriteriaStop deleting half-open DMZ Ddns Dynamic DNS Settings UPnP Universal Plug and Play Setting Tools Configuration Tools ToolsTools Firmware Upgrade Tools Reset StatusFollowing items are included on this screen Install the SMC Printer Port Monitor Skip this section if you are using UnixConfiguring the Print Server Install the SMC Printer Port Monitor Configure the Print Server Configure the Network Printer in Windows 95/98/MeConfigure the Print Server Configure the Network Printer in Windows NT Configure the Print Server Configure the Network Printer in Unix Systems Configure LPR port on Windows 2000/XPConfigure the Print Server Configuring the Print Server Configure the Print Server Configuring the Print Server Page Configuring the Print Server Configure the Print Server Configuring the Print Server Configure the Print Server Configuring the Print Server Confirm printer connection Page Troubleshooting Verify you are connected to the Barricade RouterHave another IP Address displayed TroubleshootingAm getting an IP Address that starts with Symptom Possible SolutionsTroubleshooting Standards Advanced FeaturesIndicator Panel LAN InterfaceSpecifications Specifications Specifications Page For Technical SUPPORT, Call