1-6
Security Overview
Network Security Features
Network Security Features
This section outlines features and defence mechanisms for protecting access
through the switch to the network. For more detailed information, see the
indicated chapters.
Table 1-2.
Network Security—Default Settings and Security Guidelines
Feature
Default
Setting
Security Guidelines
More Information and
Configuration Details
Secure File
Transfers
not
applicable
Secure Copy and SFTP provide a secure alternative to
TFTP and auto-TFTP for transferring sensitive
information such as configuration files and log
information between the switch and other devices.
Management and
Configuration Guide,
Appendix A “File Transfers”
,
refer to the section
“Using
Secure Copy and SFTP”
USB Autorun
enabled
(disabled
once a
password
has been set)
Used in conjunction with HP PCM+, this feature allows
diagnosis and automated updates to the switch via the
USB flash drive. When enabled in secure mode, this is
done with secure credentials to prevent tampering.
Note that the USB Autorun feature is disabled
automatically, once a password has been set on the
switch.
Management and
Configuration Guide,
Appendix A “File Transfers”
,
refer to the section
“USB
Autorun”
Traffic/Security
Filters
none
These statically configured filters enhance in-band
security (and improve control over access to network
resources) by forwarding or dropping inbound network
traffic according to the configured criteria. Filter options
include:
•
source-port filters
: Inbound traffic from a
designated, physical source-port will be forwarded
or dropped on a per-port (destination) basis.
•
multicast filters
: Inbound traffic having a specified
multicast MAC address will be forwarded to
outbound ports or dropped on a per-port (destination)
basis.
•
protocol filters
: Inbound traffic having the selected
frame (protocol) type will be forwarded or dropped
on a per-port (destination) basis.
Chapter 12, “Traffic/Security
Filters and Monitors”
Содержание HP ProCurve Series 6600
Страница 2: ......
Страница 6: ...iv ...
Страница 26: ...xxiv ...
Страница 102: ...2 48 Configuring Username and Password Security Password Recovery ...
Страница 204: ...4 72 Web and MAC Authentication Client Status ...
Страница 550: ...10 130 IPv4 Access Control Lists ACLs General ACL Operating Notes ...
Страница 612: ...12 24 Traffic Security Filters and Monitors Configuring Traffic Security Filters ...
Страница 734: ...14 44 Configuring and Monitoring Port Security Operating Notes for Port Security ...
Страница 756: ...16 8 Key Management System Configuring Key Chain Management ...
Страница 776: ...20 Index web server proxy 14 42 webagent access 6 6 wildcard See ACL wildcard See ACL ...
Страница 777: ......