DefensePro User Guide
Basic Device Configuration
90
Document ID: RDWR-DP-V0602_UG1201
Configuring Suspend Settings
DefensePro can suspend traffic from an IP address that was the source of an attack, for a defined
period of time.
Dynamic blocking duration is implemented by the anti-scan and server cracking protections based
on the suspend settings that you configure. (Although connection rate limits and intrusion
signatures can be set manually to suspend the source, they do not support dynamic duration.)
The dynamic blocking duration is usually set by the DefensePro anti-scan and server cracking
protections:
•
The initial suspend time period cannot be lower than the Minimal Aging Timeout.
•
Each additional time the same source is suspended, the suspension length is doubled until it
reaches the Maximal Aging Timeout.
•
When the suspension length has reached the maximum length allowed, it remains constant for
each additional suspension.
To configure Suspend Table settings
1. In the Configuration perspective Advanced Parameters tab navigation pane, select Suspend
Table Settings.
2. Configure the parameters; and then, click
(Submit) to submit the changes.
Session Table Full Action
The action that the device takes when the Session Table is at full
capacity.
Values:
•
Allow new traffic—The device bypasses new sessions until
the till session table has room for new entries.
•
Block new traffic—The device blocks new sessions until the
session table has room for new entries.
Default: Allow new traffic
Alert-Start Threshold
The percentage of full capacity of the Session Table when the
device starts issuing alerts.
Default: 95
Alert-Stop Threshold
The percentage of full capacity of the Session Table when the
device stops issuing alerts.
Default: 90
Table 31: Session Table Parameters
Parameter
Description
Summary of Contents for DefensePro 6.02
Page 1: ...DefensePro User Guide Software Version 6 02 Document ID RDWR DP V0602_UG1201 January 2012 ...
Page 2: ...DefensePro User Guide 2 Document ID RDWR DP V0602_UG1201 ...
Page 20: ...DefensePro User Guide 20 Document ID RDWR DP V0602_UG1201 ...
Page 28: ...DefensePro User Guide Table of Contents 28 Document ID RDWR DP V0602_UG1201 ...
Page 116: ...DefensePro User Guide Device Network Configuration 116 Document ID RDWR DP V0602_UG1201 ...
Page 302: ...DefensePro User Guide Real Time Security Reporting 302 Document ID RDWR DP V0602_UG1201 ...
Page 308: ...DefensePro User Guide Administering DefensePro 308 Document ID RDWR DP V0602_UG1201 ...
Page 324: ...DefensePro User Guide Troubleshooting 324 Document ID RDWR DP V0602_UG1201 ...