Community discussions

MikroTik App
 
difer1125
just joined
Topic Author
Posts: 1
Joined: Sun Apr 10, 2011 3:26 am

attack simulation with TFGEN

Sun Mar 21, 2021 8:30 pm

I am simulating a service degradation attack from a remote pc to mikrotik with the TFGEN tool. Indeed in the interface I can see the traffic generated. The thing is, I can't stop it with any firewall rule on the input chain. Any suggestion?
 
sindy
Forum Guru
Forum Guru
Posts: 10206
Joined: Mon Dec 04, 2017 9:19 pm

Re: attack simulation with TFGEN

Sun Mar 21, 2021 8:49 pm

You cannot stop the incoming traffic from reaching your router interface by any firewall rule - the packet must first arrive so that the firewall rule could see it. /tool sniffer and /tool torch show you the actual traffic on the interface, before the firewall rules in the wire -> silicon direction, and after the firewall rules in the silicon -> wire direction.

What you can use the firewall rules for is to prevent the traffic from reaching devices in your LAN and processes on your router.

Who is online

Users browsing this forum: Bing [Bot], GoogleOther [Bot], kusterh, nizce, Question and 118 guests