Chapter 13. Advanced Settings
This chapter describes the configurable advanced settings for NetDefendOS. The settings are
divided up into the following categories:
Note: Activate after changes
After an advanced setting is changed an activate operation must be performed in order
for the new NetDefendOS configuration to take effect.
• IP Level Settings, page 427
• TCP Level Settings, page 431
• ICMP Level Settings, page 436
• State Settings, page 437
• Connection Timeout Settings, page 439
• Length Limit Settings, page 441
• Fragmentation Settings, page 443
• Local Fragment Reassembly Settings, page 447
• Miscellaneous Settings, page 448
13.1. IP Level Settings
Log Checksum Errors
Logs occurrences of IP packets containing erroneous checksums. Normally, this is the result of the
packet being damaged during network transport. All network units, both routers and workstations,
drop IP packets that contain checksum errors. However, it is highly unlikely for an attack to be
based on illegal checksums.
Default: Enabled
Log non IP4
Logs occurrences of IP packets that are not version 4. NetDefendOS only accepts version 4 IP
packets; everything else is discarded.
Default: Enabled
Log Received TTL 0
Logs occurrences of IP packets received with the "Time To Live" (TTL) value set to zero. Under no
circumstances should any network unit send packets with a TTL of 0.
Default: Enabled
Block 0000 Src
427
Содержание 800 - DFL 800 - Security Appliance
Страница 24: ...1 3 NetDefendOS State Engine Packet Flow Chapter 1 NetDefendOS Overview 24 ...
Страница 69: ...2 6 4 Restore to Factory Defaults Chapter 2 Management and Maintenance 69 ...
Страница 121: ...3 9 DNS Chapter 3 Fundamentals 121 ...
Страница 166: ...interfaces without an overriding IGMP Setting Default 1 000 4 6 4 Advanced IGMP Settings Chapter 4 Routing 166 ...
Страница 181: ...4 7 5 Advanced Settings for Transparent Mode Chapter 4 Routing 181 ...
Страница 192: ...5 5 IP Pools Chapter 5 DHCP Services 192 ...
Страница 282: ...6 7 Blacklisting Hosts and Networks Chapter 6 Security Mechanisms 282 ...
Страница 300: ...mechanism 7 3 7 SAT and FwdFast Rules Chapter 7 Address Translation 300 ...
Страница 301: ...7 3 7 SAT and FwdFast Rules Chapter 7 Address Translation 301 ...
Страница 303: ... Changed on a regular basis such as every three months 8 1 Overview Chapter 8 User Authentication 303 ...
Страница 318: ...8 3 Customizing HTML Pages Chapter 8 User Authentication 318 ...
Страница 322: ...ALG 9 1 5 The TLS Alternative for VPN Chapter 9 VPN 322 ...
Страница 377: ...Management Interface Failure with VPN Chapter 9 VPN 377 ...
Страница 408: ...10 4 6 SLB_SAT Rules Chapter 10 Traffic Management 408 ...
Страница 419: ...11 5 HA Advanced Settings Chapter 11 High Availability 419 ...
Страница 426: ...12 3 5 Limitations Chapter 12 ZoneDefense 426 ...
Страница 449: ...13 9 Miscellaneous Settings Chapter 13 Advanced Settings 449 ...