Table 5-8
Parameters related to the DoS
Parameter
Description
Prevent SYN Flooding Attack
Indicates whether to enable the prevent SYN
flooding attack.
In the attack, several source hosts send SYN
packets to a destination host. After receiving
the SYN ACK packets from the destination
host, the source hosts do not respond. In this
case, the destination host establishes many
connection queues for the source hosts and
maintains these queues all the time because
no ACK response is received. As a result,
many resources are used and the destination
host fails to provide normal services for
normal connections.
Prevent ICMP Echo Attack
Indicates whether to enable the prevent ICMP
echo attack.
In the attack, many ICMP echo packets are
sent to a destination host within a short time.
As a result, the network is congested or the
resources of the host are exhausted.
Prevent ICMP Redirect Attack
Indicates whether to enable the prevent ICMP
redirect attack.
In the attack, many ICMP redirect packets are
sent to a destination host within a short time.
As a result, the network is congested or the
resources of the host are exhausted.
5.5.4 ONT Access Control Configuration
1.
In the navigation tree on the left, choose
Security
>
ONT Access Control
Configuration
. In the pane on the right, configure the rule of ONT access control, as shown
in
Figure 5-20
.
Figure 5-20
ONT Access Control Configuration
EchoLife HG8240/HG8245/HG8247 GPON Terminal
Service Manual
5 Web Page Reference
Issue 04 (2011-01-12)
Huawei Proprietary and Confidential
Copyright © Huawei Technologies Co., Ltd.
5-23