iES26GF
User’s
Manual
UM-iES26GF-1.2.3-EN.docx
Pages 107 of 169
Figure 113 - DDOS Prevention interface
The following table describes the labels for the
DDOS Prevention
screen.
Label
Description
Mode
Enables or disables DDOS prevention of the port
Sensibility
Indicates the level of DDOS detection. Possible levels are:
Low
: low sensibility
Normal
: normal sensibility
Medium
: medium sensibility
High
: high sensibility
Packet Type
Indicates the types of DDoS attack packets to be monitored. Possible types are:
RX Total
: all ingress packets
RX Unicast
: unicast ingress packets
RX Multicast
: multicast ingress packets
RX Broadcast
: broadcast ingress packets
TCP
: TCP ingress packets
UDP
: UDP ingress packets
Socket
Number
If the packet type is UDP or TCP, specify the socket number here. The socket
number can be a range of numbers, from low to high, or a single number. In
this case, insert the same number in both
Low
and
High
fields. For Socket
Numbers other than UDP or TCP, the Socket number cannot be specified.
Filter
If the packet type is UDP or TCP, choose the socket direction. The options are
Destination
and
Source
.
Action
Indicates the action to be taken when DDOS attacks occur. Possible actions are:
---: no action
Blocking 1 minute
: blocks forwarding for 1 minute and logs the event
Blocking 10 minute
: blocks forwarding for 10 minutes and logs the event
Blocking
: blocks and logs the event
Shunt Down the Port
: shuts down the port (No Link) and logs the event
Only Log it
: simply logs the event
Status
Indicates the DDOS prevention status. Possible statuses are:
---
: disables DDOS prevention
Analyzing
: analyzes packet throughput for initialization
Running
: analysis completes and ready for next move
Attacked
: DDOS attacks occur