SmartDefense Categories
Chapter 13: Using SmartDefense
291
Small PMTU
Small PMTU (Packet MTU) is a bandwidth attack in which the client fools the server into sending large
amounts of data using small packets. Each packet has a large overhead that creates a "bottleneck" on the
server.
You can protect against this attack by specifying a minimum packet size for data sent over the Internet.
Table 70: Small PMTU Fields
In this field…
Do this…
Action
Specify what action to take when a packet is smaller than the
Minimal MTU
Size
threshold, by selecting one of the following:
Block.
Block the packet.
None.
No action. This is the default.
Track
Specify whether to issue logs for packets are smaller than the
Minimal MTU
Size
threshold, by selecting one of the following:
Log.
Issue logs. This is the default.
None.
Do not issue logs.
Minimal MTU
Size
Type the minimum value allowed for the MTU field in IP packets sent by a
client.
An overly small value will not prevent an attack, while an overly large value
might degrade performance and cause legitimate requests to be dropped.
The default value is 300.
Summary of Contents for IP60 - Security Appliance
Page 1: ...Part No N450000643 Rev 001 Published February 2008 Nokia IP60 Security Appliance User Guide ...
Page 4: ...4 Nokia IP60 Security Appliance User Guide ...
Page 10: ......
Page 12: ......
Page 38: ......
Page 58: ......
Page 108: ......
Page 268: ......
Page 482: ......