Configuration Guide
DoS Protection Configuration
valid source IP addresses. ISP shall also use this function to prevent attack
messages from accessing Internet, while the network administrator of enterprises
(campus network) shall apply ingress filtering to ensure that the enterprise network
will not become the birthplace of such attacks.
Ruijie network switch adopts RFC2827-based ingress filtering rules to defend
against DoS attacks. The filtering is achieved through the automatic generation of
specific ACLs by the switch itself, and will not pile any pressure on network
forwarding.
Of course, you can also use the address binding or Dot1x function of Ruijie network
switch to achieve filtering effect, or by setting up ACLs.
Typical applications
A. ISP deploys ingress filtering on the access router to prevent messages with
disguised source IP from accessing ISP and Internet:
B. The enterprise network (campus network) deploys ingress filtering on layer-3
switch to prevent messages with disguised source IP from accessing enterprise
(campus) network:
Summary of Contents for RG-S2900G-E Series
Page 1: ...RG S2900G E Series Switch RGOS Configuration Guide Release 10 4 2b12 p1 ...
Page 91: ...Configuration Guide Configuring PoE Configuration ...
Page 133: ...Configuration Guide EEE Configuration ...
Page 319: ...Configuration Guide QinQ Configuration ...
Page 408: ......
Page 409: ...IP Routing Configuration 1 Static Route Configuration ...
Page 412: ......
Page 413: ...Multicast Configuration 1 IGMP Snooping Configuration 2 MLD Snooping Configuration ...
Page 757: ......
Page 758: ...ACL QoS Configuration 1 Access Control List Configuration 2 QoS Configuration ...
Page 801: ...Reliability Configuration 1 RLDP Configuration 2 TPP Configuration 3 SEM Configuration ...
Page 901: ...Configuration Guide ERSPAN Configuration ...
Page 902: ...Web based Configuration 1 Web based Configuration ...