Vigor2760 Series User’s Guide
147
greater than 1024 octets.
Block Smurf
The Vigor router will ignore any broadcasting ICMP echo
request.
Block Ping of Death
This attack involves the perpetrator sending overlapping
packets to the target hosts so that those target hosts will hang
once they re-construct the packets. The Vigor routers will
block any packets realizing this attacking activity.
Block Trace Route
Enforce the Vigor router not to forward any trace route
packets.
Block ICMP
Fragment
Any ICMP packets with more fragment bit set are dropped.
Block SYN fragment
The Vigor router will drop any packets having SYN flag and
more fragment bit set.
Block Unassigned
Numbers
Individual IP packet has a protocol field in the datagram
header to indicate the protocol type running over the upper
layer. However, the protocol types greater than 100 are
reserved and undefined at this time. Therefore, the router
should have ability to detect and reject this kind of packets.
Block Fraggle Attack
Any broadcast UDP packets received from the Internet is
blocked.
Activating the DoS/DDoS defense functionality might block
some legal packets. For example, when you activate the
fraggle attack defense, all broadcast UDP packets coming
from the Internet are blocked. Therefore, the RIP packets
from the Internet might be dropped.
Apply
Click it to save the settings.
Clear
Click it to remove the modification of the web page.
Cancel
Click it to return to previous web page.
3. After finished the settings above, click Apply to save the settings then click Cancel to
return to previous page.