Security Commands
1021
Denial of Service Commands
Dell EMC Networking N1100-ON/N1500/N2000/N2100-
ON/N3000/N3100-ON/N4000 Series Switches
The Dell EMC Networking DoS capability supports a package of filters
intended to provide network administrators the ability to reduce network
exposure to common attack vectors. The following list shows the DoS attack
detection Dell EMC Networking supports.
• SIP=DIP:
–
Source IP address = Destination IP address.
• First Fragment:
–
TCP Header size smaller then configured value.
• TCP Fragment:
–
IP Fragment Offset = 1.
• TCP Flag:
–
TCP Flag SYN set and Source Port < 1024 or TCP Control Flags = 0
and
–
TCP Sequence Number = 0 or TCP Flags FIN, URG, and PSH set
and
–
TCP Sequence Number = 0 or TCP Flags SYN and FIN set.
• L4 Port:
–
Source TCP/UDP Port = Destination TCP/UDP Port.
• ICMP:
–
Limiting the size of ICMP Ping packets.
• SMAC=DMAC:
–
Source MAC address = Destination MAC address.
• TCP Port:
–
Source TCP Port = Destination TCP Port.
• UDP Port:
–
Source UDP Port = Destination UDP Port.
• TCP Flag & Sequence:
Содержание N1100-ON
Страница 2: ......
Страница 4: ......
Страница 258: ...Using the CLI 258 ...
Страница 488: ...Layer 2 Switching Commands 488 Operational State Querier Operational version 1 ...
Страница 656: ...Layer 2 Switching Commands 656 10 ...
Страница 1128: ...Audio Visual Bridging Commands 1128 ...
Страница 1186: ...Data Center Technology Commands 1186 ...
Страница 1414: ...Layer 3 Routing Commands 1414 Command History Introduced in version 6 2 0 1 firmware Example console route map set metric 6432 ...
Страница 1435: ...Layer 3 Routing Commands 1435 Number of Joins 7 Number of Groups 1 ...
Страница 1598: ...Layer 3 Routing Commands 1598 Vl10 Rx 0 0 0 0 0 0 0 Tx 2 0 0 0 0 0 0 Invalid Packets Received 0 ...
Страница 1621: ...Layer 3 Routing Commands 1621 Vl10 Rx 0 0 0 0 0 0 0 Tx 2 0 0 0 0 0 0 Invalid Packets Received 0 ...
Страница 2330: ......
Страница 2331: ...www dell com support dell com Printed in the U S A ...
Страница 2332: ......