Technical Reference
OPEN824RL / RLW ADSL / VoIP Routers
67
Intrusion Detection
The router’s
Intrusion Detection System
(IDS) is used to detect hacker attacks and intrusion attempts from the
Internet. If the IDS function of the firewall is enabled, inbound packets are filtered and blocked depending on
whether they are detected as possible hacker attacks, intrusion attempts or other connections that the router
determines to be suspicious.
The router uses a
Blacklist
to detect possible attacks. If such attacks are detected, the source IP or
destination IP address of the offending source will be added to the Blacklist. Any further attempts using this IP
address will be blocked for the time period specified as the
Block Duration.
The default setting for
Durations
is set to disabled. Some attack types are denied immediately without using the Blacklist function, such as
Land
attack
and
Echo/CharGen scan
.
To Access The Intrusion Detection Screen:
From the
Configuration
menu list,
Click
Firewall,
then
Intrusion Detection
.
The following appears: