Netgear M6100 – Campus Edge and SMB Core Chassis Switches ユーザーガイド

ページ / 564
Managing Device Security 
424
M6100 Web Management User Guide 
6. 
Use Denial of Service First Fragment to enable First Fragment DoS prevention which 
causes the switch to check DoS options on first fragment IP packets when switch are 
receiving fragmented IP packets. Otherwise, switch ignores the first fragment IP 
packages.The factory default is disabled. 
7. 
Use Denial of Service ICMP Fragment to enabling ICMP Fragment DoS prevention which 
causes the switch to drop ICMP Fragmented packets. The factory default is disabled. 
8. 
Use Denial of Service SIP=DIP to enable SIP=DIP DoS prevention which causes the 
switch to drop packets that have a source IP address equal to the destination IP address. 
The factory default is disabled. 
9. 
Use Denial of Service SMAC=DMAC to enable SMAC=DMAC DoS prevention which 
causes the switch to drop packets that have a source MAC address equal to the destination 
MAC address. The factory default is disabled. 
10. 
Use Denial of Service TCP FIN&URG&PSH to enable TCP FIN & URG & PSH DoS 
prevention which causes the switch to drop packets that have TCP Flags FIN, URG, and 
PSH set and TCP Sequence Number=0. The factory default is disabled. 
11. 
Use Denial of Service TCP Flag&Sequence to enable TCP Flag DoS prevention which 
causes the switch to drop packets that have TCP control flags set to 0 and TCP sequence 
number set to 0. The factory default is disabled. 
12. 
Use Denial of Service TCP Fragment to enable TCP Fragment DoS prevention which 
causes the switch to drop packets: 
First TCP fragments that has a TCP payload: IP_Payload_Length - IP_Header_Size 
< Min_TCP_Header_Size. 
The factory default is disabled. 
13. 
Use Denial of Service TCP Offset to enable TCP Offset DoS prevention which causes the 
switch to drop packets that have a TCP header Offset=1. The factory default is disabled. 
14. 
Use Denial of Service TCP Port to enable TCP Port DoS prevention which causes the 
switch to drop packets that have TCP source port equal to TCP destination port. The factory 
default is disabled. 
15. 
Use Denial of Service TCP SYN to enable TCP SYN DoS prevention which causes the 
switch to drop packets that have TCP Flags SYN set. The factory default is disabled. 
16. 
Use Denial of Service TCP SYN&FIN to enable TCP SYN & FIN DoS prevention which 
causes the switch to drop packets that have TCP Flags SYN and FIN set. The factory 
default is disabled. 
17. 
Use Denial of Service UDP Port to enable UDP Port DoS prevention which causes the 
switch to drop packets that have UDP source port equal to UDP destination port. The factory 
default is disabled. 
Access Control
From the Security > Access link, you can access the following pages that you use to 
configure and display Access Control data: