h3h5_in_the_lan.fm
A31003-H3590-S100-7-7620, 06/2012
HiPath 3000/5000 V9, Service documentation
13-15
Nur für den internen Gebrauch
HiPath 3000/5000 in the LAN Network
HG 1500 Board
13.6.2
Security/Firewall/Packet Filter
HG 1500 features status-dependent control filters. The status-dependent control checks are
performed over “flows”. A “flow” is stream of associated packets and all the error ICMPs (in-
cluding path-MTU messages) that affect these packets. In TCP terms, a flow is defined on the
basis of IP addresses and port numbers, and consists of both the TCP packets and all associ-
ated error ICMPs. This is similar for UDP.
DoS: HG 1500 offers protection against various Denial-of-Service attacks and other network-
level attacks, such as, SYN flooding, various fragmentation attacks, TCP hijacking (different
active attacks, for example, via ARP spoofing), LAND (identical source and destination IPs),
so-called “Christmas trees” (all TCP flags set), etc.
H.225.0
Annex G
Signaling protocol for edge gatekeepers in
different domains
Q.931
Signaling protocol for call setup and clear-
down between two endpoints
RAS Control
Defines signaling between client and gate-
keeper for detection and registration
H.235
Standard
Signaling protocol for authentication and en-
cryption
H.245
Standard
Signaling protocol for defining usage of func-
tions and channels
H.323
Standard
Transport protocol for packet-oriented multi-
media communication systems
H.341
Standard
Definition of Management Information Base
for controlling and administering an H.323
network
H.450
Standard
A series of protocols that define signaling be-
tween endpoints for supplementary services
HTTP
HTTPS
Hypertext Transfer Protocol (Se-
cure)
Transport protocol for transferring text and
graphics in the Web (secure connection)
SNMP
Simple Network Management
Protocol
Connection protocol for network manage-
ment systems
Table 13-2
Protocols Used
Summary of Contents for HiPath 3000 Series
Page 1252: ......