User manual

Table Of Contents
Reference: Configuration options
111
Automatic rule timeout
Block forever
If this option is enabled, a rule that was automatically created, for example, during a port
scan is retained.
Remove rule after n seconds
If this option is enabled, a rule that was automatically created for example during a port
scan, is removed again after the time you have defined. This option is enabled as the
default setting.
12.5.2 General adapter rules
Network connections that have been set up are designated adapters. Adapter rules can
be drawn up for the following Client network connections:
Default adapter: LAN or high-speed internet
Wireless
Dial-up connection
Form the adapter's context menu you can specify pre-defined adapter rules for every
available adapter:
Security level - High
Security level - Medium
Security level - Low
You also have the option of modifying individual adapter rules to suit your own
particular requirements.
Note
The default security level setting for all predefined rules of the Avira Firewall is High
ICMP protocol
The Internet Control Message Protocol (ICMP) is used to exchange error and
information messages on networks. The protocol is also used for status messages with
ping or tracer.
With this rule you can define the incoming and outgoing blocked message types, the
behavior in case of flooding and the reaction of fragmented ICMP packets. This rule
serves for preventing so-called ICMP flood attacks, which results in an increase of the
CPU load of the attacked machine as it responds to every packet.
Predefined rules for the ICMP protocol
Setting: Low
Setting:
Medium
Setting: High
Incoming blocked types: no
type.
Outgoing blocked types: no
type.
Assume flooding if delay
between packets is less than
Same rule as for
the low level.
Incoming blocked types:
several types
Outgoing blocked types:
several types
Assume flooding if delay
between packets is less than