DefensePro User Guide
Security Configuration
124
Document ID: RDWR-DP-V0602_UG1201
Configuring BDoS Footprint Bypass
You can define footprint bypass types and values that will not be used as part of a real-time
signature. The types and values not be used in OR or in AND operations within the blocking rule
(real-time signature) even when the protection-engine suggests that the traffic is a real-time
signature candidate.
To configure footprint bypass
1. In the Configuration perspective Security Settings tab navigation pane, select
BDoS Protection > BDoS Footprint Bypass.
2. From the Footprint Bypass Controller drop-down list, select the attack protection for which
you want to configure footprint bypass, and click Go. The table displays the bypass types and
values for the selected attack protection.
3. To edit bypass type settings, double-click the corresponding row.
4. Configure the footprint bypass parameters for the selected bypass type; and then, click OK.
Duration of Non-attack
Traffic in Anomaly or Non-
Strictness State
The time, in seconds, at which the degree of attack falls below and
stays below the hard-coded threshold in the Anomaly state or the
Non-strictness state. When the time elapses, DefensePro declares
the attack to be terminated.
Values:
•
0—DefensePro declares the attack to be terminated
immediately.
•
1–300
Default: 10
Table 57: Footprint Strictness Examples
Footprint Example
Strictness Level
Low
Medium
High
TTL
Yes No
No
TTL AND Packet Size
Yes
Yes
No
TTL AND Packet Size AND Destination Port Yes
Yes
Yes
Table 58: BDoS Footprint Bypass Parameters
Parameter
Description
Footprint Bypass
Controller
(Read-only) The selected attack protection for which you are configuring
footprint bypass.
Bypass Field
(Read-only) The selected bypass type to configure.
Table 56: BDoS Protection Global Parameters
Parameter
Description
Summary of Contents for DefensePro 6.02
Page 1: ...DefensePro User Guide Software Version 6 02 Document ID RDWR DP V0602_UG1201 January 2012 ...
Page 2: ...DefensePro User Guide 2 Document ID RDWR DP V0602_UG1201 ...
Page 20: ...DefensePro User Guide 20 Document ID RDWR DP V0602_UG1201 ...
Page 28: ...DefensePro User Guide Table of Contents 28 Document ID RDWR DP V0602_UG1201 ...
Page 116: ...DefensePro User Guide Device Network Configuration 116 Document ID RDWR DP V0602_UG1201 ...
Page 302: ...DefensePro User Guide Real Time Security Reporting 302 Document ID RDWR DP V0602_UG1201 ...
Page 308: ...DefensePro User Guide Administering DefensePro 308 Document ID RDWR DP V0602_UG1201 ...
Page 324: ...DefensePro User Guide Troubleshooting 324 Document ID RDWR DP V0602_UG1201 ...