Virus Throttling
Configuring and Applying Connection-Rate ACLs
<
tcp-data
> or <
udp-data
>
TCP or UDP Port Number or (Well-
Known) Port Name:
Use the TCP or UDP port
number required for the desired match. The
switch also accepts certain well-known TCP or
UDP port names as alternates to their corre
sponding port numbers:
TCP/UDP-PORT:
Specify port by number.
bootpc:
Bootstrap Protocol, client (68)
bootps:
Bootstrap Protocol, server (67)
dns:
Domain Name Service (53)
ntp:
Network Time Protocol (123)
radius:
Remote Authentication Dial-In User
Service (1812)
radius-old:
Remote Authentication Dial-In
User Service 1645)
rip:
Routing Information Protocol (520)
snmp:
Simple Network Management Protocol
(161)
snmp-trap:
Simple Network Management Pro
tocol (162)
tftp:
Trivial File Transfer Protocol (69)
ProCurve(config)# ignore tcp host 15.75.10.11 destination-port eq 1812
source-port eq 1812
ProCurve(config)# filter udp 15.75.10.0/24 source-port neq 162
destination-port eq 162
Ignore (allow) tcp traffic from the
host at 15.75.10.11 with both
source and destination tcp ports
of 1812.
Filter (drop) udp traffic from the
subnet at 15.75.10.0 with a
source udp port number not
equal to 162 and a destination
udp port number of 162.
Figure 3-9. Examples of Connection-Rate ACEs Using UDP/TCP Criteria
3-25
Содержание J8697A
Страница 1: ...6200yl Access Security Guide 5400zl 3500yl ProCurve Switches K 11 XX www procurve com ...
Страница 2: ......
Страница 22: ...Product Documentation Feature Index xx ...
Страница 55: ...Configuring Username and Password Security Front Panel Security 2 21 ...
Страница 56: ...Configuring Username and Password Security Front Panel Security 2 22 ...
Страница 58: ...Virus Throttling Contents Operating Notes 3 30 Connection Rate Log and Trap Messages 3 31 3 2 ...
Страница 88: ...Virus Throttling Connection Rate Log and Trap Messages This page is intentionally unused 3 32 ...
Страница 118: ...Web and MAC Authentication Client Status This page intentionally unused 4 30 ...
Страница 230: ...Configuring Secure Socket Layer SSL Common Errors in SSL setup This page is intentionally unused 8 22 ...
Страница 356: ...Configuring and Monitoring Port Security Operating Notes for Port Security 11 44 ...
Страница 370: ...Using Authorized IP Managers Operating Notes This page is intentionally unused 12 14 ...
Страница 388: ...10 Index ...
Страница 389: ......