The SIP Firewall provides protection from the Denial of Service (DoS) attacks such as:
Flood Protection from a specified source.
Advanced Flood Protection. Define a rule to detect or mitigate flood attacks within the live SIP stream without knowing the flood source in advance. You do not need to know the host that is causing the flood when you configure the rule. A high-performance database tracks all matching messages.
Rate-Limiting. Configure a Rate Limit action to limit the number of SIP packets that are forwarded within a specified period.
Rate-Blocking. Configure a Rate Block action to block an offending SIP source when the traffic reaches a specified threshold within a given period. Traffic is then blocked until the configured timeout expires.
Signature Detection. Configure a rule to perform signature detection and drop packets that match the signature. The rule can support both simple and regular-expression string searching across either the entire SIP header region of the message or across the full message (headers and body).