This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

IPS DoS attack policies

Hello,

When i am enabling IPS DoS Policies, TCP Flood, UDP Flood, SYN Flood, i can't access admin portal of Sophos XG Firewall plus user browsing will stoped, I need your help.

 

Thanks

Habib



This thread was automatically locked due to age.
Parents Reply Children
  • Hi Ian,

     

    Yes, I agree Sophos default value is 12000. But you can always fine tune the settings. In an ideal scenario, when a user (standalone PC and not Terminal Server) browse a site like Facebook, linkedIn, MSN the max SYN packet are 10-15/sec followed by all TCP packet.

     

    In case of UDP application like VOIP, VPN, etc you will have to increase UDP flood to 12000+ or add DoS bypass rule. 

     

    Regards, Ronak.