HP VPN Firewall Appliances Attack Protection Configuration Guide

9
Figure 7 Enabling Land and Smurf attack detection for the untrusted zone
Verifying the configuration
Check that the firewall can detect Land and Smurf attacks from the untrusted zone, output alarm logs
accordingly, and drop the attack packets.
You can select Intrusion Detection > Statistics from the navigation tree to view the counts of Land and
Smurf attacks and the counts of dropped attack packets.
Configuring traffic abnormality detection
Configuring ICMP flood detection
ICMP flood detection is mainly intended to protect servers and is typically configured for an internal
zone.
1. From the navigation tree, select Intrusion Detection > Traffic Abnormality > ICMP Flood.
The ICMP flood detection configuration page appears, as shown in Figure 8.