Managed switch DoS blocker with PfSense...
-
I have Netgear GS308T and it has a page for DoS attack blocking. Can/SHOULD/is it safe to use along side PfSense?
I'm thinking in my head no, but would like to hear from the experts!
Thank you!
-
options are :
Denial of Service Min TCP Header Size
20
(0 to 31)
Denial of Service Max ICMP Packet Size
512
(0 to 16376)
Denial of Service ICMPv4 Disable Enable
Denial of Service Ping of Death Disable Enable
Denial of Service ICMP Fragment Disable Enable
Denial of Service Smurf Disable Enable
Denial of Service SIP=DIP Disable Enable
Denial of Service SMAC=DMAC Disable Enable
Denial of Service TCP FIN&URG&PSH Disable Enable
Denial of Service TCP Flag&Sequence Disable Enable
Denial of Service TCP Fragment Disable Enable
Denial of Service TCP Offset Disable Enable
Denial of Service TCP Port Disable Enable
Denial of Service TCP Source Port Disable Enable
Denial of Service TCP SYN&FIN Disable Enable
Denial of Service TCP SYN&RST Disable Enable
Denial of Service UDP Port Disable Enable -
Deppends what it actually does. Most of those look like they would only block traffic that should never be present but some could certainly cause problems.
Steve