SMC Networks SMC2804WBR38 DoS Criteria and Port Scan Criteria, Parameter Defaults Description

Page 68

Configuring the Wireless Barricade g Router

Parameter

Defaults

Description

Fragmentation

10 sec

Configures the number of seconds that a

half-open wait

 

packet state structure remains active. When

 

 

the timeout value expires, the router drops

 

 

the unassembled packet, freeing that

 

 

structure for use by another packet.

TCP SYN wait

30 sec

Defines how long the software will wait for a

 

 

TCP session to synchronize before dropping

 

 

the session.

TCP FIN wait

5 sec

Specifies how long a TCP session will be

 

 

maintained after the firewall detects a FIN

 

 

packet.

TCP connection idle

3600 seconds

The length of time a TCP session will be

timeout

(1 hour)

maintained if there is no activity.

UDP session idle

30 sec

The length of time a UDP session will

timeout

 

maintained if there is no activity.

 

 

 

H.323 data channel

180 sec

The length of time an H.323 session will be

idle timeout

 

maintained if there is no activity.

 

 

 

DoS Criteria and Port Scan Criteria

Set up DoS and port scan criteria in the spaces provided (as shown below).

Parameter

Defaults

Description

Total incomplete TCP/UDP

300 sessions

Defines the rate of newly

sessions HIGH

 

unestablished sessions that will

 

 

cause the software to start

 

 

deleting half-open sessions.

Total incomplete TCP/UDP

250 sessions

Defines the rate of newly

sessions LOW

 

unestablished sessions that will

 

 

cause the software to stop

 

 

deleting half-open sessions.

Incomplete TCP/UDP sessions

250 sessions

Maximum number of allowed

(per min.) HIGH

 

incomplete TCP/UDP sessions

 

 

per minute.

Incomplete TCP/UDP sessions

200 sessions

Minimum number of allowed

(per min.) LOW

 

incomplete TCP/UDP sessions

 

 

per minute. Set this to “0” if no

 

 

minimum setting is required.

Maximum incomplete TCP/UDP

10 sessions

Maximum number of

sessions number from same

 

incomplete TCP/UDP sessions

host

 

from the same host.

 

 

 

58

Image 68
Contents C 2 8 0 4 W B R Page Page Copyright FCC Class B FCC RF Radiation Exposure StatementEC Conformance Declaration Class B Line ±1kV, AC/DC Line to Earth ±2kVSafety Compliance Industry Canada Class BAustralia AS/NZS 3548 1995 Class B Underwriters Laboratories Compliance StatementWichtige Sicherheitshinweise Germany Table of Contents Table of Contents About the Wireless Barricade G Router LED IndicatorsFeatures and Benefits Installing the Wireless Barricade G Router Package ContentsHardware Description Hardware Description System Requirements Basic Installation Procedure Connect the SystemPower on Connect the power adapter to the Router Connect the System Making the Wlan Connections Attach the Wireless Barricade g Router to the Internet Making the WAN Connection Connecting the Power AdapterInstalling TCP/IP Windows 95/98/MEInstalling TCP/IP WindowsConfiguring Client TCP/IP Setting Up TCP/IP Configuring Your Computer in Windows 95/98/MeConfiguring Client TCP/IP Obtain IP Settings from Your Wireless Barricade g Router Configuring Your Computer in Windows NT Setting Up TCP/IP Configuring Your Computer in Windows Configuring Your Computer in Windows XP Configuring a Macintosh Computer Manual IP Configuration Verifying Your TCP/IP Connection Pinging 192.168.2.1 with 32 bytes of data Request timed out Configuring the Wireless Barricade G Router Browser ConfigurationInternet Explorer For Macintosh Disable Proxy ConnectionInternet Explorer 5 or above Netscape 4 or above Making Configuration Changes Navigating the Web Browser InterfaceSetup Wizard Time ZoneBroadband Type Cable ModemFixed-IP xDSL PPPoEAdvanced Setup Menu DescriptionSystem Time ZonePassword Settings WAN Dynamic IP Point-to-Point Over Ethernet PPPoE Point-to-Point Tunneling Protocol Pptp Static IP Address DNS LAN Wireless Channel and SsidEncryption Advanced Setup Configuring the Wireless Barricade g Router Network Address Translation NAT Address MappingVirtual Server Special Applications Access Control FirewallAdvanced Setup MAC Filtering Table URL Blocking Schedule Rule Intrusion Detection Discard Ping from WAN Default Disabled SPI and Anti-DoS firewall protection Default EnabledRIP Defect Default Enabled If an RIP request packet is When hackers attempt to enter your network, we can alert Parameter Defaults Description DoS Criteria and Port Scan CriteriaDMZ Ddns Dynamic DNS Settings UPnP Universal Plug and Play Setting Tools Configuration Tools ToolsTools Firmware Upgrade Tools Reset Status Section DescriptionTroubleshooting Verify your connection to the RouterAm getting an IP Address that starts with Have another IP Address displayed10/100 LED does not light after a connection is made Advanced Features Indicator PanelDimensions WeightInput Power Power ConsumptionTemperature SafetyPage For Technical SUPPORT, Call