Page 91 / 141
DTUS065 rev A.7 – June 27, 2014
VI.1.4.3
Denial Of Service (DOS) protection
Enable SYN-flood protection:
The syn-flood attack consists in filling the victim’s resources by creating
many half-opened connections. It is explained
in details on
http://en.wikipedia.org/wiki/SYN_flood
Drop invalid packets:
Drop invalid frames or frames without active connection.
VI.1.4.4
Bridge filter
In this section you can manage layer 2 (link-level) filter groups.
Each filter group may contain several rules and may be affected to one or more Ethernet or
Wireless interfaces, provided they are included in a bridge.
The filter drops the frame if one rule matches in group.
a.
Add group
Add new group
Edit group
Remove group