Operation Manual
Protect Your Network
6-17
Enable Block Land Click the associated checkbox and then enforce the
Vigor router to defense the Land attacks. The LAN
attack combines the SYN attack technology with IP
spoofing. A Land attack occurs when an attacker
sends spoofed SYN packets having the identical source
and destination addresses, as well as the port number,
with those of the victim.
Enable Block Smurf Click the checkbox to act
ivate the Block Smurf function.
The Vigor router will reject any ICMP echo request
destined to the broadcast address.
Enable Block trace
route
Click the checkbox to activate this function. The Vigor
router will not forward any trace route packets.
Enable Block SYN
fragment
Click the checkbox to activate the Block SYN fragment
function. Any packets having SYN flag and more
fragment bit set will be dropped.
Enable Block fraggle
Attack
Click the checkbox to activate the Block fraggle Attack
function. Any broadcast UDP packets received from
the Internet is blocked.
Note that Activating the DoS/DDoS defense functionality might
block some legal packets. For example, when you activate the
fraggle attack defense, all broadcst UDP packets coming from the
Internet are blocked. Therefore, the RIP packets from the Internet
might be dropped.