how to stop udp floods?

one of our servers received udp floods yesterday. checking the logwatch report, we saw that we received more than 53,000 udp packets on a port scan profiling.

we have apf and it was successful in dropping the packets but it generated huge loads that no connect attempts by us was completed.

how do we stop udp/tcp port scans?

 

 

 

 

Top