Configuring and Monitoring Port Security
Reading Intrusion Alerts and Resetting Alert Flags
■
The switch enables notification of the intrusion through the following
means:
•
In
the
CLI:
–
The
show port-security intrusion-log
command displays the
Intrusion Log
–
The
log
command displays the Event Log
•
In the menu interface:
–
The Port Status screen includes a per-port intrusion alert
–
The Event Log includes per-port entries for security viola
tions
•
In the web browser interface:
–
The Alert Log’s Status | Overview window includes entries for
per-port security violations
–
The Intrusion Log in the Security | Intrusion Log window lists
per-port security violation entries
•
In network management applications such as ProCurve Manager
via an SNMP trap sent to a network management station
How the Intrusion Log Operates
When the switch detects an intrusion attempt on a port, it enters a record of
this event in the Intrusion Log. No further intrusion attempts on that port will
appear in the Log until you acknowledge the earlier intrusion event by reset
ting the alert flag.
The Intrusion Log lists the 20 most recently detected security violation
attempts, regardless of whether the alert flags for these attempts have been
reset. This gives you a history of past intrusion attempts. Thus, for example,
if there is an intrusion alert for port A1 and the Intrusion Log shows two or
more entries for port 1, only the most recent entry has not been acknowledged
(by resetting the alert flag). The other entries give you a history of past
intrusions detected on port A1.
Figure 11-13. Example of Multiple Intrusion Log Entries for the Same Port
11-35
Содержание J8697A
Страница 1: ...6200yl Access Security Guide 5400zl 3500yl ProCurve Switches K 11 XX www procurve com ...
Страница 2: ......
Страница 22: ...Product Documentation Feature Index xx ...
Страница 55: ...Configuring Username and Password Security Front Panel Security 2 21 ...
Страница 56: ...Configuring Username and Password Security Front Panel Security 2 22 ...
Страница 58: ...Virus Throttling Contents Operating Notes 3 30 Connection Rate Log and Trap Messages 3 31 3 2 ...
Страница 88: ...Virus Throttling Connection Rate Log and Trap Messages This page is intentionally unused 3 32 ...
Страница 118: ...Web and MAC Authentication Client Status This page intentionally unused 4 30 ...
Страница 230: ...Configuring Secure Socket Layer SSL Common Errors in SSL setup This page is intentionally unused 8 22 ...
Страница 356: ...Configuring and Monitoring Port Security Operating Notes for Port Security 11 44 ...
Страница 370: ...Using Authorized IP Managers Operating Notes This page is intentionally unused 12 14 ...
Страница 388: ...10 Index ...
Страница 389: ......