•
|
Max Incomplete WAN Connections / sec – The maximum number of pending embryonic half-open connections recorded since the firewall has been up (or since the last time the TCP statistics were cleared).
|
•
|
Average Incomplete WAN Connections / sec – The average number of pending embryonic half-open connections, based on the total number of samples since boot up (or the last TCP statistics reset).
|
•
|
SYN Floods in Progress – The number of individual forwarding devices that are currently exceeding either SYN Flood threshold.
|
•
|
RST Floods in Progress – The number of individual forwarding devices that are currently exceeding the SYN/RST/FIN flood blacklisting threshold.
|
•
|
FIN Floods in Progress – The number of individual forwarding devices that are currently exceeding the SYN/RST/FIN flood blacklisting threshold.
|
•
|
Total SYN, RST, or FIN Floods Detected – The total number of events in which a forwarding device has exceeded the lower of either the SYN attack threshold or the SYN/RST/FIN flood blacklisting threshold.
|
•
|
TCP Connection SYN-Proxy State (WAN only) – Indicates whether or not Proxy-Mode is currently on the WAN interfaces.
|
•
|
Current SYN-Blacklisted Machines – The number of devices currently on the SYN blacklist.
|
•
|
Current RST-Blacklisted Machines – The number of devices currently on the RST blacklist.
|
•
|
Current FIN-Blacklisted Machines – The number of devices currently on the FIN blacklist.
|
•
|
Total SYN-Blacklisting Events – The total number of instances any device has been placed on the SYN blacklist.
|
•
|
Total RST-Blacklisting Events – The total number of instances any device has been placed on the RST blacklist.
|
•
|
Total FIN-Blacklisting Events – The total number of instances any device has been placed on the FIN blacklist.
|
•
|
Total SYN Blacklist Packets Rejected – The total number of packets dropped because of the SYN blacklist.
|
•
|
Total RST Blacklist Packets Rejected – The total number of packets dropped because of the RST blacklist.
|
•
|
Total FIN Blacklist Packets Rejected – The total number of packets dropped because of the FIN blacklist.
|
•
|
Invalid SYN Flood Cookies Received – The total number of invalid SYN flood cookies received.
|