ADVANCED SETUP

DoS Detect Criteria

Set up DoS (Denial-of-Service) and port scan criteria in the spaces provided (as shown below).

Parameter

Defaults

Description

 

 

 

Total incomplete TCP/UDP

300 sessions

Defines the rate of newly

sessions HIGH

 

unestablished sessions that will

 

 

cause the software to start

 

 

deleting half-open sessions.

Total incomplete TCP/UDP

250 sessions

Defines the rate of newly

sessions LOW

 

unestablished sessions that will

 

 

cause the software to stop

 

 

deleting half-open sessions.

Incomplete TCP/UDP sessions

250 sessions

Maximum number of allowed

(per min.) HIGH

 

incomplete TCP/UDP sessions

 

 

per minute.

Incomplete TCP/UDP sessions

200 sessions

Minimum number of allowed

(per min.) LOW

 

incomplete TCP/UDP sessions

 

 

per minute. Set this to “0” if no

 

 

minimum setting is required.

Maximum incomplete TCP/UDP

10 sessions

Maximum number of incomplete

sessions number from same

 

TCP/UDP sessions from the

host

 

same host.

Incomplete TCP/UDP sessions

300 msec

Length of time before an

detect sensitive time period

 

incomplete TCP/UDP session is

 

 

detected as incomplete.

Maximum half-open

30

Maximum number of half-open

fragmentation packet number

 

fragmentation packets from the

from same host

 

same host.

Half-open fragmentation

1 sec

Length of time before a

detect sensitive time period

 

half-open fragmentation session

 

 

is detected as half-open.

Flooding cracker block time

300 sec

Length of time from detecting a

 

 

flood attack to blocking of the

 

 

attack.

 

 

 

69

Page 75
Image 75
SMC Networks SMC2304WBR-AG manual DoS Detect Criteria