D-Link DFL-2400 [61/112] Set ddos parameters

D-Link DFL-2400 [61/112] Set ddos parameters
DFL-2100/DFL-2400 Intrusion Detection System User Manual
51
Figure 5-12: Un-directional Protect Scope
Figure 5-13: Pick Protect Scope
Set DDoS Parameters
If a DDoS Attack Defense Policy is selected, there is no protect scope window. But the
administrators need to set some parameters needed by statistical detection model. The
parameters are
1. Number of packets: The lower bound number of packet passed through in a second.
2. Number of flooding/smurfing packets: The lower bound number of packets that are
identified as flooding/smurfing packets in a second.
3. Traffic distribution: A number to tune the sensitivity of detection model. Range from
0 to 100. If you give a large number, the internal model of DFL-2100/DFL-2400 will
be more sensitive to the variance of traffic distribution.
Note Only addresses and groups already defined in Address
Book and Group Book will show in the combo box. If you
want to add a host in the protect scope, you have to define
it in the Address Book first. See chapter 7 Policy definition
Process
Note When a “Local” address or “Local” group is chosen, the
opposite field must be a “Remote” address or “Remote”
group. Only traffic from “Local” to “Remote” or from
“Remote” to “Local” will pass through DFL-2100/DFL-2400.

Содержание

Скачать