SonicWALL - Flood Protection - Layer 3 - Attack Threshold

Information

The SYN Attack Threshold configuration options provide limits for SYN Flood activity before the device drops packets. The device gathers statistics on WAN TCP connections, keeping track of the maximum and average maximum and incomplete WAN connections per second. Out of these statistics, the device suggests a value for the SYN flood threshold.

NOTE: Nessus has provided the target output to assist in reviewing the benchmark to ensure target compliance.

Solution

Navigate to Firewall Settings->Flood Protection->Layer 3 SYN Flood Protection - SYN Proxy and set 'SYN Attack Threshold' to a value that aligns with the statistics of your device 'Suggested value calculated from gathered statistics'.

Item Details

Audit Name: TNS SonicWALL v5.9

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-5

Plugin: SonicWALL

Control ID: b7ce43daa73c4ec6bc7f79669fe5a49f38b3d185853c7e43b07c892c826769ce