Prestige 792H User’s Guide
Firewall Configuration
9-7
Table 9-2 Alert
LABEL DESCRIPTION
One Minute High This is the rate of new half-open sessions that causes the firewall to start deleting
half-open sessions. The default is "100". When the rate of new connection attempts
rises above this number, the Prestige deletes half-open sessions as required to
accommodate new connection attempts. The Prestige stops deleting half-open
sessions when the number is less than the
One Minute Low.
Maximum
Incomplete Low
This is the number of existing half-open sessions (default "80") that causes the
firewall to stop deleting half-open sessions.
The Prestige continues to delete half-open requests as necessary, until the number
of existing half-open sessions drops below this number.
Maximum
Incomplete High
This is the number of existing half-open sessions (default "100") that causes the
firewall to start deleting half-open sessions. When the number of existing half-open
sessions rises above this number, the Prestige deletes half-open sessions as
required to accommodate new connection requests. The Prestige stops deleting half-
open sessions when the number is less than the
Max Incomplete Low
.
Do not set
Maximum Incomplete High
to lower than the current
Max Incomplete
Low
number.
TCP Maximum
Incomplete
This is the number of existing half-open TCP sessions (default "10") with the same
destination host IP address that causes the firewall to start dropping half-open
sessions to that same destination host IP address. Enter a number between
1
and
256
.
As a general rule, you should choose a smaller number for a smaller network, a
slower system or limited bandwidth.
Blocking Time When
TCP Maximum Incomplete
is reached you can choose if the next session
should be allowed or blocked. If you select
Blocking Time
, any new sessions will be
blocked for the length of time you specify in the next field
(min)
and all old
incomplete sessions will be cleared during this period.
If you want strong security, it is better to block the traffic for a short time, as it will give
the server some time to digest the loading.
(min) Type the length of
Blocking Time
in minutes (1-256). The default is "0".
Back
Click
Back
to return to the previous screen.
Apply
Click
Apply
to save your customized settings and exit this screen.
Cancel
Click
Cancel
to return to the previously saved settings.
Summary of Contents for Prestige 792H
Page 1: ...Prestige 792H G SHDSL 4 port Security Gateway User s Guide Version 3 40 BZ 0 March 2004...
Page 8: ......
Page 32: ......
Page 34: ......
Page 40: ......
Page 46: ......
Page 66: ......
Page 86: ...Prestige 792H User s Guide 5 14 WAN Setup Figure 5 6 Advanced WAN Backup...
Page 94: ......
Page 108: ......
Page 112: ......
Page 134: ......
Page 164: ......
Page 178: ...Prestige 792H User s Guide 14 8 VPN Screens Figure 14 3 VPN IKE...
Page 206: ......
Page 210: ......
Page 220: ......
Page 221: ...Maintenance VI Part VI Maintenance This part covers the maintenance screens...
Page 222: ......
Page 234: ......
Page 236: ......
Page 246: ......
Page 268: ......
Page 270: ......
Page 282: ......
Page 286: ......
Page 312: ......
Page 334: ......
Page 348: ......
Page 370: ......
Page 380: ......
Page 388: ......
Page 390: ......
Page 406: ......
Page 410: ......
Page 415: ...XI Part XI Appendices and Index This section provides some Appendices and an Index...
Page 416: ......
Page 420: ......
Page 424: ......
Page 426: ......
Page 430: ......