[ATP/FLEX] How to Set Up Session Control on Nebula
Session Control allows you to limit the number of concurrent NAT/Security Policy sessions a client can use. It can prevent the gateway's bandwidth from being exhausted by some clients which use too many sessions at one time.
Set up Session Control
Configure > Firewall > Security policy > Session Control
UDP Session Time Out:
Set how many seconds the Nebula Device will allow a UDP session to remain idle (without UDP traffic) before closing it.
Session Per Host:
Use this field to set a common limit to the number of concurrent NAT/Security Policy sessions each client computer can have.
If only a few clients use peer to peer applications, you can raise this number to improve their performance. With heavy peer to peer application use, lower this number to ensure no single client uses too many of the available NAT sessions.
Test result
Monitor > Firewall > Event log
When the session of a single host reaches the threshold, the following message can be observed from the log.
Categories
- All Categories
- 415 Beta Program
- 2.4K Nebula
- 152 Nebula Ideas
- 100 Nebula Status and Incidents
- 5.8K Security
- 285 USG FLEX H Series
- 278 Security Ideas
- 1.5K Switch
- 74 Switch Ideas
- 1.1K Wireless
- 42 Wireless Ideas
- 6.5K Consumer Product
- 251 Service & License
- 396 News and Release
- 85 Security Advisories
- 29 Education Center
- 10 [Campaign] Zyxel Network Detective
- 3.6K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 86 About Community
- 75 Security Highlight