Atlantis Land A02-WRA4-54G manual Intrusion Detection, Block Duration

Models: A02-WRA4-54G

1 75
Download 75 pages 25.52 Kb
Page 43
Image 43
3.6.3.4.2 INTRUSION DETECTION

I-FLY WIRELESS ROUTER ADSL

6. The port filter rule of HTTP is shown as below.

3.6.3.4.2 INTRUSION DETECTION

The router’s Intrusion Detection System (IDS) is used to detect hacker attacks and intrusion attempts from the Internet. If the IDS function of the firewall is enabled, inbound packets are filtered and blocked depending on whether they are detected as possible hacker attacks, intrusion attempts or other connections that the router determines to be suspicious.

Blacklist: If the router detects a possible attack, the source IP or destination IP address will be added to the Blacklist. Any further attempts using this IP address will be blocked for the time period specified as the Block Duration. The default setting for this function is false (disabled). Some attack types are denied immediately without using the Blacklist function, such as Land attack and Echo/CharGen scan.

Block Duration:

DoS Attack Block Duration: This is the duration for blocking hosts that attempt a possible Denial of Service (DoS) attack. Possible DoS attacks this attempts to block include Ascend Kill and WinNuke. Default value is 1800 seconds.

37

Page 43
Image 43
Atlantis Land A02-WRA4-54G manual Intrusion Detection, Block Duration