
use the options checkboxes to enable the following:
1 enable vpn passthrough (ipsec, pptp, l2tp)
if lan users need to use vpn (virtual private networking) software on their computer, and connect to remote sites or servers, enable this checkbox. this will allow the vpn protocols (ipsec, pptp, l2tp) to be used. if this checkbox is not checked, these protocols are blocked.
2 drop fragmented ip packets
if checked, all fragmented ip packets will be dropped (discarded). normally, this should not be checked.
3 block tcp flood
if checked, when a tcp flood attack is detected, the port used will be closed, and no traffic will be able to use that port.
4 block udp flood
if checked, when a udp flood attack is detected, all traffic from that ip address will be blocked.
5 block non-standard packets
if checked, only known packet types will be accepted; other packets will be blocked. the known packet types are tcp, udp, icmp, esp, and gre. note that these are packet types, not protocols.