NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.

Forum Discussion

peos42's avatar
peos42
Tutor
Mar 12, 2018
Solved

Auto-DoS

Hi

 

Is the Auto-DoS function a joke????

 

If this is enabled it is enough for an attacker do just send one malformed packet and the Negear according to the docs shuts down the port permanently until manually enabled..

 

--snip--

When an attack is detected, a warning message is logged to the buffered log and is sent to the syslog server. At the same time, the port is shut down and can be enabled only manually by the admin user.

--snip--

 

No option to block it and keep the port enabled or at least auto open it again? Netgear will with this function make it easier to perform a DoS attack... 

 

What have I missed?

 

/Peo

 

 

 

  • I understand how it works now. Not ideal for us. But you sorted it out for me. For that I thank you very much.

     

    /Peo

6 Replies

  • JohnC_V's avatar
    JohnC_V
    NETGEAR Employee Retired

    Hi peos42,

     

    Welcome to our community! :)

     

    The purpose of the Auto-DoS is to prevent it from the attack and not to block. Unless, you manually create a MAC-ACL for you to block it. It doesn't have a feature that it will auto-open again. 

     

    Regards,

    • JohnC_V's avatar
      JohnC_V
      NETGEAR Employee Retired

      peos42,

       

      What I mean to say is, DoS feature will disable the port if it received an attack and prevent future attacks. If it has an auto-enabled feature, then it will just turn on and off. Once the port has been disabled, you need to look and check the device that is causing the issue and manually enable it once it's done. Sorry for the confusion. But we cannot block the device unless you use MAC-ACL. 

       

      Regards,

    • peos42's avatar
      peos42
      Tutor

      I am not 100% with you here.. I am maybe stupid :)

       

       

      According to the docs the port closes permanently when is sees an attack. Which means any person can shut down my port by being bad with a few packets against the switch port. This way it is easy do DoS me (i.e make my service unusable as my switch port is closed)... 

       

      Please tell me what I have missed or missunderstood here.

       

      /Peo

       

       

NETGEAR Academy

Boost your skills with the Netgear Academy - Get trained, certified and stay ahead with the latest Netgear technology! 

Join Us!

ProSupport for Business

Comprehensive support plans for maximum network uptime and business peace of mind.

 

Learn More