How to stop DOS attacke if only one source attacking with lots of udp
packets ? DoS prifile udp_flood anomaly it' s not what I need ... need
to create filter that lets only for example 100 pack/sec from one
source.
How to deffend client if attack comming from one source with lots of udp
packets ? DOS profile udp_flood will drop all packets good and bad. How
to create limit for example that only 100 packets per second would be
accepted from one source ?
Hello, what is difference betwean udp_scan and udp_flood ? Im testing
with hrping.exe ... and launching udp 53, 100 packets per second. My
udp_scan threshold 1 and udp_flood 50. Allways udp_flood matches the
threshold and cant understand why. How to ...
Hello, is it posible to writte ips custom signature to let only 5
packets/sec DNS requests ? for now I only can recognice DNS request for
i.e. facebook and drop that packet, but how to let only 5 packets/second
to DNS server.
No ... Im talking about DOS profile and DoS anomalies. Traffic shaping
isn' t DOS protection. Because you can send udp flood with small packets
and traffic shaping wount help.
We had DDoS attack to DNS with request resolve ripe.net ... how to
accept only 5 packets per second with dns lookup request ripe.net, but
all other request accept as usually.
Hi, I have similar problema with e-mail marked as spam ... I have
checked IP address and URL ... but in fortinet antispam database they
arent marked as spam. Tryed debug but cant find that e-mail would got
score 100 or more in ASE verdict. Fortinet s...