![Cisco 350XG series Скачать руководство пользователя страница 454](http://html.mh-extra.com/html/cisco/350xg-series/350xg-series_administration-manual_67491454.webp)
Security
Denial of Service Prevention
Cisco 350XG & 550XG Series 10G Stackable Managed Switches
440
19
-
Mask
—Select the subnet to which the source IP address belongs and
enter the subnet mask in dotted decimal format.
-
Prefix Length
—Select the Prefix Length and enter the number of bits that
comprise the source IP address prefix.
STEP 4
Click
Apply
. The ICMP filtering is defined, and the Running Configuration is
updated.
IP Fragmented Filtering
The IP Fragmented page enables blocking fragmented IP packets.
To configure fragmented IP blocking:
STEP 1
Click Security > Denial of Service Prevention > IP Fragments Filtering.
STEP 2
Click Add.
STEP 3
Enter the parameters.
•
Interface
—Select the interface on which the IP fragmentation is being
defined.
•
IP Address
—Enter an IP network from which the fragmented IP packets is
filtered or select
All Addresses
to block IP fragmented packets from all
addresses. If you enter the IP address, enter either the mask or prefix length.
•
Network Mask
—Select the format for the subnet mask for the source IP
address, and enter a value in one of the field:
-
Mask
—Select the subnet to which the source IP address belongs and
enter the subnet mask in dotted decimal format.
-
Prefix Length
—Select the Prefix Length and enter the number of bits that
comprise the source IP address prefix.
STEP 4
Click Apply. The IP fragmentation is defined, and the Running Configuration file is
updated.