![Cisco 350XG series Скачать руководство пользователя страница 445](http://html.mh-extra.com/html/cisco/350xg-series/350xg-series_administration-manual_67491445.webp)
Security
Denial of Service Prevention
Cisco 350XG & 550XG Series 10G Stackable Managed Switches
431
19
Denial of Service Prevention
A Denial of Service (DoS) attack is a hacker attempt to make a device unavailable
to its users.
DoS attacks saturate the device with external communication requests, so that it
cannot respond to legitimate traffic. These attacks usually lead to a device CPU
overload.
This section describes ARP Inspection and covers the following topic s:
•
•
•
•
•
•
•
•
•
•
•
•
Secure Core Technology (SCT)
One method of resisting DoS attacks employed by the device is the use of SCT.
SCT is enabled by default on the device and cannot be disabled.
The Cisco device is an advanced device that handles management traffic,
protocol traffic and snooping traffic, in addition to end-user (TCP) traffic.
SCT ensures that the device receives and processes management and protocol
traffic, no matter how much total traffic is received. This is done by rate-limiting
TCP traffic to the CPU.
There are no interactions with other features.