F3726, F3211, F3174, R5135, R3816-HP Firewalls and UTM Devices Attack Protection Configuration Guide-6PW100

9
Figure 7 Enabling Land and Smurf attack detection for the untrusted zone
128BVerifying the configuration
Check that the firewall can detect Land and Smurf attacks from the untrusted zone, output alarm logs
accordingly, and drop the attack packets.
You can select Intrusion Detection > Statistics from the navigation tree to view the counts of Land and
Smurf attacks and the counts of dropped attack packets.
56BConfiguring traffic abnormality detection
129BConfiguring ICMP flood detection
ICMP flood detection is mainly intended to protect servers and is usually configured for an internal zone.
1. From the navigation tree, select Intrusion Detection > Traffic Abnormality > ICMP Flood.
The ICMP flood detection configuration page appears, as shown in
271HFigure 8.