User's Manual

UTT Technologies Chapter 12 Security
http://www.uttglobal.com Page 309
Figure 12-1 Internal Attack Defense Settings
1. Virus Attacks Defense
Enable Blaster Virus Defense: It allows you to enable or disable anti-blaster virus
defense. If you select the check box to enable this feature, it will effectively protect the
Device against blaster and sasser virus attacks. After you enable this feature, the
Device will discard those TCP packets destined for port 135, 136, 137, 138, 139, 445,
1025, 5554 or 9996, so the LAN hosts cannot access the related services provided by
outside hosts, e.g., windows file and printer sharing services.
Enable IP Spoofing Defense: It allows you to enable or disable IP spoofing defense.
If you select the check box to enable this feature, it will effectively protect the Device
against IP spoofing attack. After you enable this feature, the Device will only forward
the packets whose source IP address is in the same subnet as the Device LAN IP
address. Note that in this case the hosts behind a L3 switch cannot access the
Internet through the Device.
Enable UDP Flood Defense: It allows you to enable or disable UDP flood defense. If
you select this check box to enable this feature, it will effectively protect the Device
against UDP flood attack. After you enable this feature, if the number of UDP packets
from one source IP address (e.g., 192.168.16.66) to a single port on a remote host