Korenix Technology Co., Ltd.
Industrial
Layer 3 Managed Ethernet Switch
_____________________________________________________________________________
Industrial Layer 3 Managed Ethernet SwitchUser Manual
Page: 1100/1246
Denial of Service SMAC=DMAC
- Enable or disable this option by selecting the corresponding line
on the pull-down entry field. Enabling SMAC=DMAC DoS prevention causes the switch to drop
packets that have a source MAC address equal to the destination MAC address. The factory default
is disabled.
Denial of Service TCP FIN&URG&PSH
- Enable or disable this option by selecting the
corresponding line on the pull-down entry field. Enabling TCP FIN & URG & PSH DoS prevention
causes the switch to drop packets that have TCP Flags FIN, URG, and PSH set and TCP Sequence
Number=0. The factory default is disabled.
Denial of Service TCP Flag & Sequence
- Enable or disable this option by selecting the
corresponding line on the pull-down entry field. Enabling TCP Flag DoS prevention causes the switch
to drop packets that have TCP control flags set to 0 and TCP sequence number set to 0. The factory
default is disabled.
Denial of Service TCP SYN
- Enable or disable this option by selecting the corresponding line on
the pull-down entry field. Enabling TCP SYN DoS prevention causes the switch to drop packets that
have TCP Flags SYN set. The factory default is disabled.
Denial of Service TCP SYN&FIN
- Enable or disable this option by selecting the corresponding line
on the pull-down entry field. Enabling TCP SYN & FIN DoS prevention causes the switch to drop
packets that have TCP Flags SYN and FIN set. The factory default is disabled.
Denial of Service First Fragment
- Enable or disable this option by selecting the corresponding line
on the pull-down entry field. Enabling First Fragment DoS prevention causes the switch to drop
packets that have a more fragment equal to 1 and cooperate with other DoS options. The factory
default is disabled.
Denial of Service TCP Offset
- Enable or disable this option by selecting the corresponding line on
the pull-down entry field. Enabling TCP Offset DoS prevention causes the switch to drop packets
that have a TCP header Offset=1. The factory default is disabled.
Configurable Data
Denial of Service Min TCP Hdr Size
- Specify the Min TCP Hdr Size allowed. If First Fragment DoS
prevention is enabled, the switch will drop packets that have a TCP header smaller then this
configured Min TCP Hdr Size. The factory default value is 20.
Denial of Service Max ICMPv4 Payload Size
- Specify the Max ICMPv4 Payload Size allowed. If
ICMP DoS prevention is enabled, the switch will drop IPv4 ICMP ping packets that have a payload
size greater than this configured Max ICMP Payload Size. The factory default value is 512.
Denial of Service Max ICMPv6 Pkt Size
- Specify the Max IPv6 ICMP Payload Size allowed. If
ICMP DoS prevention is enabled, the switch will drop IPv6 ICMP ping packets that have a payload
size greater than this configured Max ICMP Payload Size. The factory default value is 512.
Command Buttons
Submit
- Update the switch with the values on the screen. If you want the switch to retain the new
values across a power cycle you must perform a save.