Re: [Mikrotik] Ipv6 Firewall Question - PSD Field

2012-06-08 Thread Meftah Tayeb

same, not found on 5.17
- Original Message - 
From: "Butch Evans" 

To: "Mikrotik discussions" 
Sent: Friday, June 08, 2012 7:55 PM
Subject: Re: [Mikrotik] Ipv6 Firewall Question - PSD Field



On Fri, 2012-06-08 at 12:16 -0400, Keith Barber wrote:

add chain=SanityCheck action=jump comment="Indentify low port scan and
tarpit" disabled=no dst-port=0-1023 jump-target=PortScan protocol=tcp
psd=10,3s,3,1


PSD is not implemented as far as I know.  I can tell you for certain it
is not in 5.11.

--

* Butch Evans* Professional Network Consultation   *
* http://www.butchevans.com/ * Network Engineering *
* http://store.wispgear.net/ * Wired or Wireless Networks  *
* http://blog.butchevans.com/ * ImageStream, Mikrotik and MORE!*
*  NOTE THE NEW PHONE NUMBER: 702-537-0979 *




___
Mikrotik mailing list
Mikrotik@mail.butchevans.com
http://www.butchevans.com/mailman/listinfo/mikrotik

Visit http://blog.butchevans.com/ for tutorials related to Mikrotik 
RouterOS



__ Information from ESET NOD32 Antivirus, version of virus 
signature database 6830 (20120126) __


The message was checked by ESET NOD32 Antivirus.

http://www.eset.com






__ Information from ESET NOD32 Antivirus, version of virus signature 
database 6830 (20120126) __

The message was checked by ESET NOD32 Antivirus.

http://www.eset.com



___
Mikrotik mailing list
Mikrotik@mail.butchevans.com
http://www.butchevans.com/mailman/listinfo/mikrotik

Visit http://blog.butchevans.com/ for tutorials related to Mikrotik RouterOS


Re: [Mikrotik] Ipv6 Firewall Question - PSD Field

2012-06-08 Thread Butch Evans
On Fri, 2012-06-08 at 12:16 -0400, Keith Barber wrote:
> add chain=SanityCheck action=jump comment="Indentify low port scan and
> tarpit" disabled=no dst-port=0-1023 jump-target=PortScan protocol=tcp
> psd=10,3s,3,1

PSD is not implemented as far as I know.  I can tell you for certain it
is not in 5.11.

-- 

* Butch Evans* Professional Network Consultation   *
* http://www.butchevans.com/ * Network Engineering *
* http://store.wispgear.net/ * Wired or Wireless Networks  *
* http://blog.butchevans.com/ * ImageStream, Mikrotik and MORE!*
*  NOTE THE NEW PHONE NUMBER: 702-537-0979 *




___
Mikrotik mailing list
Mikrotik@mail.butchevans.com
http://www.butchevans.com/mailman/listinfo/mikrotik

Visit http://blog.butchevans.com/ for tutorials related to Mikrotik RouterOS


[Mikrotik] Ipv6 Firewall Question - PSD Field

2012-06-08 Thread Keith Barber
Good afternoon all,

 

I’m working on reworking our core firewalls, and have come across a
field that doesn’t seem to exist in the ipv6 firewall.

 

(this is run as part of the input chain)

add chain=SanityCheck action=jump comment="Indentify low port scan and
tarpit" disabled=no dst-port=0-1023 jump-target=PortScan protocol=tcp
psd=10,3s,3,1

 

Is my rule, and the ‘psd’ is what is missing.  The router I’m working
with is v4.17, not sure if that exists in v5 or if there is another way
to write this rule.

 

Thanks for any ideas.

 

-Keith-


-- next part --
An HTML attachment was scrubbed...
URL: 

___
Mikrotik mailing list
Mikrotik@mail.butchevans.com
http://www.butchevans.com/mailman/listinfo/mikrotik

Visit http://blog.butchevans.com/ for tutorials related to Mikrotik RouterOS