EasyManuals Logo

Draytek Vigor2860 Series User Manual

Draytek Vigor2860 Series
737 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #205 background imageLoading...
Page #205 background image
Vigor2860 Series User’s Guide
191
3
3
.
.
5
5
.
.
4
4
D
D
o
o
S
S
D
D
e
e
f
f
e
e
n
n
s
s
e
e
As a sub-functionality of IP Filter/Firewall, there are 15 types of detect/ defense function in
the DoS Defense setup. The DoS Defense functionality is disabled for default.
Click Firewall and click DoS Defense to open the setup page.
Available settings are explained as follows:
Item Description
Enable Dos Defense
Check the box to activate the DoS Defense Functionality.
Select All
Click this button to select all the items listed below.
Enable SYN flood defense
Check the box to activate the SYN flood defense function.
Once detecting the Threshold of the TCP SYN packets from
the Internet has exceeded the defined value, the Vigor
router will start to randomly discard the subsequent TCP
SYN packets for a period defined in Timeout. The goal for
this is prevent the TCP SYN packets’ attempt to exhaust the
limited-resource of Vigor router.
By default, the threshold and timeout values are set to 2000
packets per second and 10 seconds, respectively. That
means, when 2000 packets per second received, they will be
regarded as “attack event” and the session will be paused
for 10 seconds.
Enable UDP flood defense
Check the box to activate the UDP flood defense function.
Once detecting the Threshold of the UDP packets from the
Internet has exceeded the defined value, the Vigor router
will start to randomly discard the subsequent UDP packets
for a period defined in Timeout.

Table of Contents

Other manuals for Draytek Vigor2860 Series

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the Draytek Vigor2860 Series and is the answer not in the manual?

Draytek Vigor2860 Series Specifications

General IconGeneral
Firewall TypeStateful Packet Inspection (SPI)
VPN SupportIPSec, PPTP, L2TP, SSL VPN
DoS ProtectionYes
Intrusion Prevention System (IPS)Yes
LAN Interfaces4 x Gigabit Ethernet
User AuthenticationLocal, RADIUS, LDAP
VPN Tunnels32
Management InterfaceWeb-based, CLI
Concurrent Sessions50, 000
Content FilteringURL Keyword Filtering, Web Content Filtering

Related product manuals