TP-Link TL-R600VPN TL-R600VPN V1 User Guide - Page 42

Enable ICMP-FLOOD Attack Filtering

Page 42 highlights

TL-R600VPN SafeStreamTM Gigabit Broadband VPN Router User Guide 4.6.2 Advanced Security Choose menu "Security→Advanced Security", you can protect the Router from being attacked by TCP-SYN Flood, UDP Flood and ICMP-Flood in the next screen (shown in Figure 4-26). Figure 4-26 ¾ Packets Statistics Interval - This is the interval for capturing the statistics. ¾ DoS Attack Defense - Enable or disable the DoS Attack Defense. ¾ Enable ICMP-FLOOD Attack Filtering - The attackers flood normal communication by attacking the server with a lot of ICMP packets. Check the box to activate the function to prevent an ICMP Flood attack. The threshold should be within the range of 5-3600 and the default value is 50. ¾ Enable UDP-FLOOD Filtering - Check the box to activate the function to prevent the UDP Flood attack of a fixed source IP. Once the packets rate exceeds threshold value, the packets will be blocked. The threshold should be within the range of 5-3600 .and the default value is 500. ¾ Enable TCP-SYN-FLOOD Attack Filtering - Check the box to activate the function to prevent a TCP-SYN-Flood attack. Once the packets rate exceeds threshold value, the packets will be blocked. The threshold should be within the range of 5-3600 and the default value is 50. 36

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82

SafeStream
TM
Gigabit Broadband VPN Router User Guide
TL-R600VPN
36
4.6.2
Advanced Security
Choose menu “
Security
Advanced Security
”, you can protect the Router from being attacked
by TCP-SYN Flood, UDP Flood and ICMP-Flood in the next screen (shown in Figure 4-26).
Figure 4-26
¾
Packets Statistics Interval -
This is the interval for capturing the statistics.
¾
DoS Attack Defense -
Enable or disable the DoS Attack Defense.
¾
Enable ICMP-FLOOD Attack Filtering
-
The attackers flood normal communication by
attacking the server with a lot of ICMP packets. Check the box to activate the function to
prevent an ICMP Flood attack. The threshold should be within the range of 5-3600 and the
default value is 50.
¾
Enable UDP-FLOOD Filtering
-
Check the box to activate the function to prevent the UDP
Flood attack of a fixed source IP. Once the packets rate exceeds threshold value, the packets
will be blocked. The threshold should be within the range of 5-3600 .and the default value is
500.
¾
Enable TCP-SYN-FLOOD Attack Filtering
-
Check the box to activate the function to
prevent a TCP-SYN-Flood attack. Once the packets rate exceeds threshold value, the
packets will be blocked. The threshold should be within the range of 5-3600 and the default
value is 50.