Using SmartDefense
In this field…
Do this…
Enforce IGMP to
multicast addresses
m
According to the IGMP specification, IGMP packets must be sent to
ulticast addresses. Sending IGMP packets to a unicast or broadcast
address might constitute and attack; therefore the NetDefend firewall
blocks suc
Specif
ckets that are sent to non-
multicast addresses, by selecting one of the following:
t are sent to non-multicast
.
•
None.
No action.
h packets.
MP pa
y whether to allow or block IG
•
Block.
Block IGMP packets tha
addresses. This is the default
Peer to Peer
SmartDefense can block peer-to-peer traffic, by identifying the proprietary
protocols and preventing the initial connection to the peer-to-peer networks. This
prevents not only downloads, but also search operations.
This category includes the following nodes:
•
•
KaZaA
•
Gnutella
eMule
•
BitTorrent
Note:
SmartDefense can detect peer-to-peer traffic regardless of the TCP port being
used to initiate the session.
252
D-Link NetDefend firewall User Guide