This shows you the differences between two versions of the page.
Both sides previous revisionPrevious revisionNext revision | Previous revisionLast revisionBoth sides next revision | ||
advanced-firewall [2023/05/28 04:26] – [Multicast] -clarity-very hard to understand hogwild | advanced-firewall [2023/05/28 05:05] – [Multicast] -clarity of IGMP Snooping and Force IGMPv2 details hogwild | ||
---|---|---|---|
Line 6: | Line 6: | ||
===== Firewall ===== | ===== Firewall ===== | ||
- | {{: | + | {{: |
- | **Limit communication | + | |
- | | + | **Limit communication to: **This specifies the maximum number of requests per second to which the Firewall will reply. Setting a limit number is recommended to prevent DDoS attacks.\\ |
+ | |||
+ | \\ | ||
+ | |||
+ | **Enable TCP SYN cookies: | ||
**Enable DCSP Fix: **Checking this enables a workaround for packet marking, a well-known issue related to DSCP when connected to Comcast. | **Enable DCSP Fix: **Checking this enables a workaround for packet marking, a well-known issue related to DSCP when connected to Comcast. | ||
Line 46: | Line 50: | ||
* LAN0 - Checking this means the LAN0 bridge will participate in IGMP proxy. | * LAN0 - Checking this means the LAN0 bridge will participate in IGMP proxy. | ||
* LAN1 - Checking this means the LAN1 bridge will participate in IGMP proxy. | * LAN1 - Checking this means the LAN1 bridge will participate in IGMP proxy. | ||
- | * LAN2 - Checking this means the LAN2 bridge will participate in IGMP proxy/ | + | * LAN2 - Checking this means the LAN2 bridge will participate in IGMP proxy. |
* LAN3 - Checking this means the LAN3 bridge will participate in IGMP proxy. | * LAN3 - Checking this means the LAN3 bridge will participate in IGMP proxy. | ||
Line 53: | Line 57: | ||
**Enable quick leave** - This is a feature of IGMP v2 and later. Enabling this allows the router to stop streaming multicast to an IP address as soon as that device sends a "quick leave" IGMP packet. | **Enable quick leave** - This is a feature of IGMP v2 and later. Enabling this allows the router to stop streaming multicast to an IP address as soon as that device sends a "quick leave" IGMP packet. | ||
- | **Custom Configuration** - This option allows you to set up advanced parameters for the IGMP proxy daemon. | + | **Custom Configuration** - This option allows you to set advanced parameters for the IGMP proxy daemon. |
\\ {{: | \\ {{: | ||
Line 69: | Line 73: | ||
**Udpxy port**- This specifies the port on which you can recive Udpxy information from your router.\\ | **Udpxy port**- This specifies the port on which you can recive Udpxy information from your router.\\ | ||
- | **Efficient Multicast Forwarding (IGMP Snooping) -** IGMP snooping | + | **Efficient Multicast Forwarding (IGMP Snooping) -** IGMP snooping |
+ | |||
+ | However, caution is advised. Often, UPnP or DLNA is the only significant multicast application in use on a home network. Thus, multicast | ||
+ | |||
+ | Enabling | ||
+ | |||
+ | A common symptom of this is a network host (say, a Smart TV) which appears | ||
- | **Force IGMPv2** - IGMPv2 enhances | + | **Force IGMPv2** - IGMPv2 enhances IGMP with additional messages/ |