Korenix Technology Co., Ltd.
Industrial
Layer 3 Managed Ethernet Switch
_____________________________________________________________________________
Industrial Layer 3 Managed Ethernet SwitchUser Manual
Page: 1099/1246
9.4.11
Managing Denial of Service Page
Selection Criteria
Denial of Service TCP Fragment
- Enable or disable this option by selecting the corresponding line
on the pull-down entry field. Enabling TCP Fragment DoS prevention causes the switch to drop
packets that have a TCP header smaller than the configured Min TCP Hdr Size. The factory default
is disabled.
Denial of Service ICMP
- Enable or disable this option by selecting the corresponding line on the
pull-down entry field. Enabling ICMP DoS prevention causes the switch to drop ICMP packets that
have a type set to ECHO_REQ (ping) and a payload size greater than the configured ICMP payload
Size. The factory default is disabled.
Denial of Service ICMPv6
- Enable or disable this option by selecting the corresponding line on the
pull-down entry field. Enabling ICMPv6 DoS prevention causes the switch to drop ICMP v6 packets
that have a type set to ECHO_REQ (ping) and a size payload greater than the configured ICMPv6
payload Size. The factory default is disabled.
Denial of Service ICMP Fragment
- Enable or disable this option by selecting the corresponding
line on the pull-down entry field. Enabling ICMP Fragment DoS prevention causes the switch to drop
ICMP Fragmented packets. The factory default is disabled.
Denial of Service TCP Port
- Enable or disable this option by selecting the corresponding line on
the pull-down entry field. Enabling TCP Port DoS prevention causes the switch to drop packets that
have TCP source port equal to TCP destination port. The factory default is disabled.
Denial of Service UDP Port
- Enable or disable this option by selecting the corresponding line on
the pull-down entry field. Enabling UDP Port DoS prevention causes the switch to drop packets that
have UDP source port equal to UDP destination port. The factory default is disabled.
Denial of Service SIP=DIP
- Enable or disable this option by selecting the corresponding line on the
pull-down entry field. Enabling SIP=DIP DoS prevention causes the switch to drop packets that have
a source IP address equal to the destination IP address. The factory default is disabled.