General Setup - Draytek Vigor130 User Manual

Vdsl2/adsl2/2+ modem
Hide thumbs Also See for Vigor130:
Table of Contents

Advertisement

For example, an ActiveX control object is usually used for providing interactive web feature.
If malicious code hides inside, it may occupy user's system.
D
e
n
i
a
l
D
e
n
i
a
l
The DoS Defense functionality helps you to detect and mitigate the DoS attack. The attacks
are usually categorized into two types, the flooding-type attacks and the vulnerability attacks.
The flooding-type attacks will attempt to exhaust all your system's resource while the
vulnerability attacks will try to paralyze the system by offending the vulnerabilities of the
protocol or operation system.
The DoS Defense function enables the Vigor modem to inspect every incoming packet based
on the attack signature database. Any malicious packet that might duplicate itself to paralyze
the host in the secure LAN will be strictly blocked and a Syslog message will be sent as
warning, if you set up Syslog server.
Also the Vigor modem monitors the traffic. Any abnormal traffic flow violating the
pre-defined parameter, such as the number of thresholds, is identified as an attack and the
Vigor modem will activate its defense mechanism to mitigate in a real-time manner.
The below shows the attack types that DoS/DDoS defense function can detect:
1. SYN flood attack
2. UDP flood attack
3. ICMP flood attack
4. Port Scan attack
5. IP options
6. Land attack
7. Smurf attack
8. Trace route
Below shows the menu items for Firewall.
3
.
4
.
2
G
e
n
e
r
a
l
3
.
4
.
2
G
e
n
e
r
a
l
General Setup allows you to adjust settings of IP Filter and common options. Here you can
enable or disable the Call Filter or Data Filter. Under some circumstance, your filter set can
be linked to work in a serial manner. So here you assign the Start Filter Set only. Also you
can configure the Log Flag settings, Apply IP filter to VPN incoming packets, and Accept
incoming fragmented UDP packets.
Click Firewall and click General Setup to open the general setup page.
Vigor130 Series User's Guide
o
f
S
e
r
v
i
c
e
(
D
o
S
)
D
o
f
S
e
r
v
i
c
e
(
D
o
S
)
D
S
e
t
u
p
S
e
t
u
p
e
f
e
n
s
e
e
f
e
n
s
e
9. SYN fragment
10. Fraggle attack
11. TCP flag scan
12. Tear drop attack
13. Ping of Death attack
14. ICMP fragment
15. Unknown protocol
66

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents