SmartDefense Categories
Chapter 13: Using SmartDefense
285
Network Quota
An attacker may try to overload a server in your network by establishing a very large number of
connections per second. To protect against Denial Of Service (DoS) attacks, Network Quota enforces a
limit upon the number of connections per second that are allowed from the same source IP address.
You can configure how connections that exceed that limit should be handled.
Table 64: Network Quota Fields
In this field…
Do this…
Action
Specify what action to take when the number of network connections
from the same source reaches the
Max. Connections/Second per Source IP
threshold. Select one of the following:
Block.
Block all new connections from the source. Existing
connections will not be blocked. This is the default.
None.
No action.
Track
Specify whether to log connections from a specific source that exceed
the
Max. Connections/Second per Source IP
threshold, by selecting one of
the following:
Log.
Log the connections. This is the default.
None.
Do not log the connections.
Max.
Connections/Second
from Same Source IP
Type the maximum number of network connections allowed per second
from the same source IP address.
The default value is 100.
Set a lower threshold for stronger protection against DoS attacks.
Note:
Setting this value too low can lead to false alarms.
Summary of Contents for IP60 - Security Appliance
Page 1: ...Part No N450000643 Rev 001 Published February 2008 Nokia IP60 Security Appliance User Guide ...
Page 4: ...4 Nokia IP60 Security Appliance User Guide ...
Page 10: ......
Page 12: ......
Page 38: ......
Page 58: ......
Page 108: ......
Page 268: ......
Page 482: ......