Blocking port space and address space attacks

Other methods that attackers use to gain access to networks and hosts are known as probes. Port space probes are used to scan a host to find what services are running on it. Address space probes scan a network to see which services are running on the hosts inside that network. From Policy Manager:

  1. On the toolbar, click the Default Packet Handling icon.
    You can also, from Policy Manager, select Setup => Intrusion Prevention => Default Packet Handling.
    The Default Packet Handling dialog box appears.
  2. Enable the checkbox marked Block Port Space Probes.
  3. Enable the checkbox marked Block Address Space Probes.

 

 

Related topics:

Default Packet Handling

Blocking spoofing attacks

Stopping IP options attacks

Stopping SYN Flood attacks

 

 

Return to Top

Copyright © 1996 - 2003 WatchGuard Technologies, Inc. All rights reserved.
Legal Notice/Terms of Use