New features in SNS 3.7.7 LTSB

Intrusion prevention

The mechanism that detects and blocks SYN Flood attacks that target hosts in the internal network can be extended to protect the firewall’s internal services. In this case, the firewall will generate specific logs that allow logging denial of service attempts by way of such attacks.

To enable this additional protection, implicit rules to the firewall's internal services must be disabled and replaced with equivalent explicit rules.

For more explanations on how to implement this protection, please refer to the relevant article in the Stormshield Knowledge Base.