Chapter 15 Firewall
NR/FWA Outdoor Series User’s Guide
189
15.6 DoS
DoS (Denial of Service) attacks can flood your Internet connection with invalid packets and connection
requests, using so much bandwidth and so many resources that Internet access becomes unavailable.
Use the DoS screen to activate protection against DoS attacks.
Click Security > Firewall > DoS to display the following screen.
Figure 133 Security > Firewall > DoS
The following table describes the labels in this screen.
Custom Source Port This is a single port number or the starting port number of a range that defines your rule.
Custom Destination
Port
This is a single port number or the ending port number of a range that defines your rule.
TCP Flag Select the TCP Flag (SYN, ACK, URG, PSH, RST, FIN).
This appears when you select TCP/UDP or TCP in the Protocol field.
Policy Use the drop-down list box to select whether to discard (Drop), deny and send an ICMP
destination-unreachable message to the sender (Reject), or allow the passage of
(Accept) packets that match this rule.
Direction Select WAN to LAN to apply the rule to traffic from WAN to LAN. Select LAN to WAN to
apply the rule to traffic from LAN to WAN. Select WAN to Router to apply the rule to traffic
from WAN to router. Select LAN to Router to apply the rule to traffic from LAN to router.
OK Click this to save your changes.
Cancel Click this to exit this screen without saving.
Table 74 Security > Firewall > Access Control > Add New ACL Rule (continued)
LABEL DESCRIPTION
Table 75 Security > Firewall > DoS
LABEL DESCRIPTION
DoS Protection
Blocking
Enable this to protect against DoS attacks. The Zyxel Device will drop sessions that surpass
maximum thresholds.
Apply Click this to save your changes.
Cancel Click this to restore your previously saved settings.