User`s guide

Vigor2960 Series User’s Guide
190
4
4
.
.
5
5
.
.
2
2
D
D
o
o
S
S
D
D
e
e
f
f
e
e
n
n
s
s
e
e
The DoS function helps to detect and mitigates DoS attacks. These include flooding-type
attacks and vulnerability attacks. Flooding-type attacks attempt to use up all your system's
resources while vulnerability attacks try to paralyze the system by offending the
vulnerabilities of the protocol or operation system.
4
4
.
.
5
5
.
.
2
2
.
.
1
1
S
S
w
w
i
i
t
t
c
c
h
h
Available parameters are listed as follows:
Item Description
Broadcast Storm
Defense
Click Enable to block the packets attacks coming from
broadcast storm.
Multicast Storm Defense
Click Enable to block the packets attacks coming from
multicast storm.
Unknown Unicast Storm
Defense
Click Enable to block the packets attacks coming from
unknown unicast storm.
Unknown Multicast
Storm Defense
Click Enable to block the packets attacks coming from
unknown multicast storm.
Storm Filtering Rate
Type a number (1~4096, unit of 64Kpbs) as for the filtering
rate.
Refresh
Renew current web page.
Apply
Click it to save the configuration.
After finished the above settings, click Apply to save the configuration.
4
4
.
.
5
5
.
.
2
2
.
.
2
2
S
S
y
y
s
s
t
t
e
e
m
m
In the Firewall group, click the DOS Defense and click the tab of System. You will see the
following page. The DoS Defense Engine inspects each incoming packet against the attack
signature database. Any packet that may paralyze the host in the security zone is blocked.
The DoS Defense Engine also monitors traffic behavior. Any anomalous situation violating
the DoS configuration is reported and the attack is mitigated.