Activate (connections/sec) | Enter the number of SYN packets (not matching an
existing session) that the zone receives per second that triggers
the Action specified in this Zone Protection profile. The firewall
uses an algorithm to progressively drop more packets as the attack
rate increases, until the rate reaches the Maximum rate. The firewall
stops dropping the SYN packets if the incoming rate drops below
the Activate threshold. For RED, the range is 1 to 2,000,000 and
default is 10,000. For SYN Cookies, the range is 0 to 2,000,000
and default is 0.
Set the threshold
just above the zone’s peak CPS rate to avoid throttling legitimate
traffic and adjust the threshold as needed.
|