User’s Manual
WSG-500 Wireless Hotspot Gateway
ENGLISH
59
6.3.5
Session Limit
To prevent ill-behaved clients or malicious software from taking up the system’s connection
resources, the administrator can restrict the number of concurrent sessions that a user can
establish.
¾
The maximum number of concurrent sessions including TCP and UDP for each user can be
specified in the Global policy, which applies to authenticated users, users on a
non-authenticated port, privileged users, and clients in DMZ zones. Also this can be specified
in the other policies to apply to the authenticated users.
¾
When the number of a user’s sessions reaches the session limit (a choice of Unlimited, 10, 25,
50, 100, 200, 350 and 500), the user will be implicitly suspended upon receipt of any new
connection request. In this case, a record will be logged to a SYSLOG server.
¾
Since this basic protection mechanism may not be able to protect the system from all
malicious DoS attacks, it is strongly recommended to build some immune capabilities (such
as IDS or IPS solutions) in network deployment to maintain network operation.
Summary of Contents for WSG-500
Page 1: ...User s Manual WSG 500 Wireless Hotspot Gateway ENGLISH i User s Manual WSG 500 V1 00 ...
Page 8: ...User s Manual WSG 500 Wireless Hotspot Gateway ENGLISH 4 Example A typical Hotspot network ...
Page 19: ...User s Manual WSG 500 Wireless Hotspot Gateway ENGLISH 15 ...
Page 28: ...User s Manual WSG 500 Wireless Hotspot Gateway ENGLISH 24 ...
Page 137: ...133 Step 6 Follow the same steps to create other Vendor specific Attribute if needed ...
Page 141: ...137 Step 9 Restart RADIUS daemon to get your settings activated ...
Page 144: ...140 ...