
ZyWALL 2 and ZyWALL 2WE
Table
FIELD | DESCRIPTION | DEFAULT VALUES |
|
|
|
One Minute High | This is the rate of new | 100 |
| that causes the firewall to start deleting | minute. The above numbers |
| cause the ZyWALL to start | |
| connection attempts rises above this | deleting |
| number, the ZyWALL deletes | when more than 100 session |
| sessions as required to accommodate | establishment attempts have |
| new connection attempts. | been detected in the last minute, |
|
| and to stop deleting |
|
| sessions when fewer than 80 |
|
| session establishment attempts |
|
| have been detected in the last |
|
| minute. |
|
|
|
Maximum Incomplete | This is the number of existing | 80 existing |
Low | sessions that causes the firewall to stop |
|
| deleting |
|
| continues to delete |
|
| necessary, until the number of existing |
|
|
| |
| number. |
|
|
|
|
Maximum Incomplete | This is the number of existing | 100 existing |
High | sessions that causes the firewall to start | The above values causes the |
| deleting | ZyWALL to start deleting half- |
| number of existing | open sessions when the number |
| rises above this number, the ZyWALL | of existing |
| deletes | rises above 100, and to stop |
| accommodate new connection requests. | deleting |
| Do not set Maximum Incomplete High to | the number of existing |
| lower than the current Maximum | sessions drops below 80. |
| Incomplete Low number. |
|
TCP Maximum | This is the number of existing | 10 existing |
Incomplete | TCP sessions with the same destination | sessions. |
| host IP address that causes the firewall to |
|
| start dropping |
|
| same destination host IP address. Enter a |
|
| number between 1 and 250. As a general |
|
| rule, you should choose a smaller number |
|
| for a smaller network, a slower system or |
|
| limited bandwidth. |
|
|
|
|
Firewall Configuration |