Recommended DoS Protection Settings in D-Link routers

jpbarnard2019

Active Member
Joined
Oct 5, 2019
Messages
45
Reaction score
21
Denial-of-Service (DoS) attacks may seem like something for enterprise IT to worry about, not home users. But rest assured that DoS attacks happen on home routers, too. The effects are sudden, dramatic drop in connectivity stability, VPN stability collapse, sluggish local router admin website, for example.

Most home routers offer a built-in firewall. Some home routers offer highly configurable firewalls. The D-Link DIR-825ACG1 has a reasonably configurable DoS Protection page. However, finding reasonable settings for the various thresholds seem to be as scarce as finding Meghan Markle, Duchess of Sussex, on the lawns of Buckingham Palace these days.

Does anyone have any authoritative info on what such settings should be for maximum DoS attack protection, yet not cripple connectivity to legit services?

DLINK-DoSProtection.PNG
 
Denial-of-Service (DoS) attacks may seem like something for enterprise IT to worry about, not home users. But rest assured that DoS attacks happen on home routers, too. The effects are sudden, dramatic drop in connectivity stability, VPN stability collapse, sluggish local router admin website, for example.

Most home routers offer a built-in firewall. Some home routers offer highly configurable firewalls. The D-Link DIR-825ACG1 has a reasonably configurable DoS Protection page. However, finding reasonable settings for the various thresholds seem to be as scarce as finding Meghan Markle, Duchess of Sussex, on the lawns of Buckingham Palace these days.

Does anyone have any authoritative info on what such settings should be for maximum DoS attack protection, yet not cripple connectivity to legit services?

Firstly, get rid of that router, many people including myself have had so many issues with it, its a pile of kak. Switching on my android TV box would cripple the wifi (it was in AP mode), so much lag and just overall junk.

I only have Port scan and DoS defence on.
 
I’m with @Rickster , that is easily the worst of the load of crap routers I’ve ever tried. The only thing worse is possibly the old TP link AP I used back when adsl was still a thing.
 
That's cute - your home router is not going to stop any form of concentrated DDoS whatsoever.

Don't bother - put whatever you're running behind Cloudflare and let the pro's handle it.
 
This is trying to protect you from state and application level attacks. If you have no services exposed to the internet this is not going to help much.
The volumetric attacks is the big problem with DDoS. The issue here is by the time it hits your router, there is nothing you can do about it.

Upstream signalling is required or upstream protection.
Enterprises either utilize this, rely on their ISP or use cloud based protection / scrubbing.

As a home user your likely option is to ask your ISP what they provide.
 
If you have issues with voice programs (Teams, Zoom, or any that uses UDP) you would need to fine tune the UDP flood setting or else it starts dropping those. For a home router yours might be fine on 1000, could perhaps even set it to less, but if you experience call quality issues you need to make it more.... so just take note of that if you leave those settings as is...
 
Thank you to everyone for your replies.

1618237148168.png
The above seems to work. Not sure whether it affords me much protection against DOS attacks, but my VPN issues have disappeared; no issues with Teams. The router performs reliably without sporadic drop of service like before I enabled the above.
I must avoid enabling IP Land, or my one VPN connection keeps being blocked for appearing to launch an IP Land attack on the router.
 
Top
Sign up to the MyBroadband newsletter
X