Intrusion Detection

The router’s Intrusion Detection System (IDS) is used to detect hacker attacks and intrusion attempts from the Internet. If the IDS function of the firewall is enabled, inbound packets are filtered and blocked depending on whether they are detected as possible hacker attacks, intrusion attempts or other connections that the router determines to be suspicious.

Blacklist: If the router detects a possible attack, the source IP or destination IP address will be added to the Blacklist. Any further attempts using this IP address will be blocked for the time period specified as the Block Duration. The default setting for this function is false (disabled). Some attack types are denied immediately without using the Blacklist function, such as Land attack and Echo/CharGen scan.

Intrusion Detection: If enabled, IDS will block Smurf attack attempts. Default is false.

Block Duration:

Victim Protection Block Duration: This is the duration for blocking Smurf attacks. Default value is 600 seconds.

Scan Attack Block Duration: This is the duration for blocking hosts that attempt a possible Scan attack. Scan attack types include X’mas scan, IMAP SYN/FIN scan and similar attempts. Default value is 86400 seconds.

DoS Attack Block Duration: This is the duration for blocking hosts that attempt a possible Denial of Service (DoS) attack. Possible DoS attacks this attempts to block include Ascend Kill and WinNuke. Default value is 1800 seconds.

Max TCP Open Handshaking Count: This is a threshold value to decide whether a SYN Flood attempt is occurring or not. Default value is 100 TCP SYN per seconds.

Max PING Count: This is a threshold value to decide whether an ICMP Echo Storm is occurring or not. Default value is 15 ICMP Echo Requests (PING) per second.

Max ICMP Count: This is a threshold to decide whether an ICMP flood is occurring or not. Default value is 100 ICMP packets per seconds except ICMP Echo Requests (PING).

For SYN Flood, ICMP Echo Storm and ICMP flood, IDS will just warn the user in the Event Log. It

78

Page 83
Image 83
Billion Electric Company 7404V(G)PX, 7404V(G)OX user manual Intrusion Detection, Block Duration

7404V(G)PX, 7404V(G)OX specifications

Billion Electric Company has emerged as a prominent player in the realm of broadband communications and networking solutions. Among its extensive range of products, the Billion 7404V(G)OX and 7404V(G)PX stand out as robust solutions designed to cater to the demands of home and small office users.

The Billion 7404V(G)OX model is primarily positioned as an ADSL2+ VoIP router, featuring a built-in DSL modem that supports a wide range of ADSL standards, including ADSL and ADSL2+. With its advanced functionalities, this device offers high-speed internet access while simultaneously providing voice over IP capabilities. The inclusion of four Ethernet ports allows users to connect multiple wired devices, and its wireless capabilities support the 802.11n standard, providing coverage and speed enhancements for Wi-Fi connectivity.

On the other hand, the 7404V(G)PX shares similar core attributes while incorporating additional features suited for enhanced performance. This model is also an ADSL2+ VoIP router with a built-in DSL modem but differentiates itself with integrated telephony support. It facilitates a seamless integration of voice and data, making it suitable for users seeking a unified communication solution. The device provides QoS (Quality of Service) features which prioritize voice traffic, ensuring clear and uninterrupted calling experiences.

Both models feature easy setup processes enabled by their user-friendly web interface, which facilitates convenient management of network settings. Security is another strong point, providing WPA/WPA2 encryption and SPI firewall capabilities to safeguard the network against unauthorized access and threats.

Notably, the Billion 7404V(G)OX and 7404V(G)PX support TR-069, a remote management protocol, allowing Internet Service Providers to efficiently manage and configure customer premises equipment, streamlining the provision of services.

In addition to their versatile features, these routers have a compact design that suits various home and office setups. Their reliability and performance make them excellent choices for users needing stable internet connectivity and integrated VoIP capabilities. Whether for casual surfing or business communications, the Billion 7404V(G)OX and 7404V(G)PX are compelling solutions in the competitive landscape of networking technologies.