ZyWALL 10/50 Internet Security Gateway

Table 12-3 Attack Alert

FIELD

DESCRIPTION

DEFAULT VALUES

 

 

 

Incomplete

host IP address that causes the firewall to

sessions.

 

start dropping half-open sessions to that

 

 

same destination host IP address. Enter a

 

 

number between 1 and 250. As a general

 

 

rule, you should choose a smaller number

 

 

for a smaller network, a slower system or

 

 

limited bandwidth.

 

 

 

 

Blocking Time

When TCP Maximum Incomplete is

Select this check box to specify

 

reached you can choose if the next

a number in minutes (min) text

 

session should be allowed or blocked. If

box.

 

you check Blocking Time any new

 

 

sessions will be blocked for the length of

 

 

time you specify in the next field (min) and

 

 

all old incomplete sessions will be cleared

 

 

during this period. If you want strong

 

 

security, it is better to block the

 

 

traffic for a short time, as it will give the

 

 

server some time to digest the loading.

 

(min)

Enter the length of Blocking Time in

0

 

minutes.

 

 

 

 

When you have finished, click Apply to save your customized settings and exit this screen, Cancel to exit this screen without saving, or Help for online HTML help on fields in this screen.

12-10

Using the ZyWALL Web Configurator