Netgear M5300-52G3 Command Line Interface (CLI) User Manual - Page 215
dos-control tcpfrag, Sequence Number set to 0 or having TCP Flags FIN, URG
View all Netgear M5300-52G3 manuals
Add to My Manuals
Save this manual to your list of manuals |
Page 215 highlights
ProSafe Managed Switch dos-control tcpfrag This command enables TCP Fragment Denial of Service protection. If the mode is enabled, Denial of Service prevention is active for this type of attack. If packets ingress having IP Fragment Offset equal to one (1), the packets will be dropped if the mode is enabled. Default Format Mode disabled dos-control tcpfrag Global Config no dos-control tcpfrag This command disabled TCP Fragment Denial of Service protection. Format Mode no dos-control tcpfrag Global Config dos-control tcpflag This command enables TCP Flag Denial of Service protections. If the mode is enabled, Denial of Service prevention is active for this type of attacks. If packets ingress having TCP Flag SYN set and a source port less than 1024 or having TCP Control Flags set to 0 and TCP Sequence Number set to 0 or having TCP Flags FIN, URG, and PSH set and TCP Sequence Number set to 0 or having TCP Flags SYN and FIN both set, the packets will be dropped if the mode is enabled. Default Format Mode disabled dos-control tcpflag Global Config no dos-control tcpflag This command sets disables TCP Flag Denial of Service protections. Format Mode no dos-control tcpflag Global Config dos-control l4port This command enables L4 Port Denial of Service protections. If the mode is enabled, Denial of Service prevention is active for this type of attack. If packets ingress having Source TCP/UDP Port Number equal to Destination TCP/UDP Port Number, the packets will be dropped if the mode is enabled. Switching Commands 215