![CTS VRG5-31412 Series Скачать руководство пользователя страница 57](http://html1.mh-extra.com/html/cts/vrg5-31412-series/vrg5-31412-series_user-manual_2694013057.webp)
57
Gateway(config)# security
ddos tcp-scan
Enable
to
prevent
the
Residential
Gateway to be probed by a hacker for
open TCP ports to then block.
Gateway(config)# security
ddos tcp-syn-with-data
Enable to prevent the hacker to send a
volume of requests for connections that
cannot be completed.
Gateway(config)# security
ddos tcp-udp-portscan
Enable to prevent a series of systematic
queries to the Residential Gateway for
open ports through which to route traffic.
Gateway(config)# security
ddos udp-bomb
Enable to prevent the hacker congesting
the network by a flood of UDP packets
between him and the Residential Gateway
using the UDP chargen service.
Gateway(config)# security
ddos udp-echo-chargen
Enable to prevent the hacker from
sending a UDP packet to the echo server
with a source port set to the chargen port.
Gateway(config)# security
ddos whole-system-flood
fin
Enable to prevent a FIN flood. This attack
will flood the network with connection
resets from an invalid IP address.
Gateway(config)# security
ddos whole-system-flood
fin [1-999]
[1-999]
Specify the packets per second.
Gateway(config)# security
ddos whole-system-flood
icmp
Enable to prevent a flood of ICMP
messages from an invalid IP address.
This attack can cause all TCP requests to
be halted.
Gateway(config)# security
ddos whole-system-flood
icmp [1-999]
[1-999]
Specify the packets per second.
Gateway(config)# security
ddos whole-system-flood
syn
Enable to prevent a SYN attack. A SYN
attack will interrupt the process of the
three way handshake of TCP and redirect
the acknowledge response to a malicious
IP address. Or it will cause the targeted
system to be flooded with false SYN
requests.
Gateway(config)# security
ddos whole-system-flood
syn [1-999]
[1-999]
Specify the packets per second.
Gateway(config)# security
ddos whole-system-flood
udp
Enable to prevent a flood of large
numbers of raw UDP packets targeted at
the Residential Gateway.
Gateway(config)# security
ddos whole-system-flood
udp [1-999]
[1-999]
Specify the packets per second.
No Command
Gateway(config)# no
security ddos
Disable DDoS prevention
Gateway(config)# no
security ddos icmp-smurf
Disable ICMP smurf
Gateway(config)# no
security ddos ip-land
Disable IP land