User Manual Part 2

Table Of Contents
SmartDefense Categories
Chapter 14: Using SmartDefense 423
Table 71: LAND Fields
In this field… Do this…
Action Specify what action to take when a LAND attack occurs, by selecting one of
the following:
Block. Block the attack. This is the default.
None. No action.
Track Specify whether to log LAND attacks, by selecting one of the following:
Log. Log the attack. This is the default.
None. Do not log the attack.
Non-TCP Flooding
Advanced firewalls maintain state information about connections in a State table. In Non-
TCP Flooding attacks, the attacker sends high volumes of non-TCP traffic. Since such
traffic is connectionless, the related state information cannot be cleared or reset, and the
firewall State table is quickly filled up. This prevents the firewall from accepting new
connections and results in a Denial of Service (DoS).
You can protect against Non-TCP Flooding attacks by limiting the percentage of state table
capacity used for non-TCP connections.