3
Virus Throttling
Contents
. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 3-3
General Operation of Connection-Rate Filtering
. . . . . . . . . . . . . . . . 3-5
Sensitivity to Connection Rate Detection . . . . . . . . . . . . . . . . . . . . . . . 3-6
. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 3-7
. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 3-8
General Configuration Guidelines
. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 3-9
For a network that is relatively attack-free: . . . . . . . . . . . . . . . . . . . . . 3-9
For a network that appears to be under significant attack: . . . . . . . . 3-10
Basic Connection-Rate Filtering Configuration
. . . . . . . . . . . . . . . . 3-11
Global and Per-Port Configuration . . . . . . . . . . . . . . . . . . . . . . . . . . . . 3-11
Enabling Connection-Rate Filtering and
Configuring Sensitivity . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 3-12
Configuring the Per-Port Filtering Mode . . . . . . . . . . . . . . . . . . . 3-13
Example of a Basic Connection-Rate Filtering Configuration . . 3-14
Viewing and Managing Connection-Rate Status . . . . . . . . . . . . . . . . . 3-16
Viewing the Connection-Rate Configuration . . . . . . . . . . . . . . . . 3-16
Listing and Unblocking the Currently-Blocked Hosts . . . . . . . . . 3-18
Configuring and Applying Connection-Rate ACLs
. . . . . . . . . . . . . . 3-20
Connection-Rate ACL Operation . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 3-21
Configuring a Connection-Rate ACL Using
Source IP Address Criteria . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 3-22
Configuring a Connection-Rate ACL Using UDP/TCP Criteria . . . . . 3-23
Applying Connection-Rate ACLs . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 3-26
Using CIDR Notation To Enter the ACE Mask . . . . . . . . . . . . . . . . . . 3-26
Example of Using an ACL in a Connection-Rate Configuration . . . . 3-27
3-1
Содержание J8697A
Страница 1: ...6200yl Access Security Guide 5400zl 3500yl ProCurve Switches K 11 XX www procurve com ...
Страница 2: ......
Страница 22: ...Product Documentation Feature Index xx ...
Страница 55: ...Configuring Username and Password Security Front Panel Security 2 21 ...
Страница 56: ...Configuring Username and Password Security Front Panel Security 2 22 ...
Страница 58: ...Virus Throttling Contents Operating Notes 3 30 Connection Rate Log and Trap Messages 3 31 3 2 ...
Страница 88: ...Virus Throttling Connection Rate Log and Trap Messages This page is intentionally unused 3 32 ...
Страница 118: ...Web and MAC Authentication Client Status This page intentionally unused 4 30 ...
Страница 230: ...Configuring Secure Socket Layer SSL Common Errors in SSL setup This page is intentionally unused 8 22 ...
Страница 356: ...Configuring and Monitoring Port Security Operating Notes for Port Security 11 44 ...
Страница 370: ...Using Authorized IP Managers Operating Notes This page is intentionally unused 12 14 ...
Страница 388: ...10 Index ...
Страница 389: ......