Configuring and Monitoring Port Security
Reading Intrusion Alerts and Resetting Alert Flags
N o t e o n
On a given port, if the intrusion action is to send an SNMP trap and then disable
S e n d - D i s a b l e
the port (
send-disable
), and then an intruder is detected on the port, the switch
O p e r a t i o n
sends an SNMP trap, sets the port’s alert flag, and disables the port. If you re-
enable the port without resetting the port’s alert flag, then the port operates
as follows:
■
The port comes up and will block traffic from unauthorized devices
it detects.
■
If the port detects another intruder, it will send another SNMP trap,
but will not become disabled again unless you first reset the port’s
intrusion flag.
This operation enables the port to continue passing traffic for authorized
devices while you locate and eliminate the intruder. Otherwise, the presence
of an intruder could cause the switch to repeatedly disable the port.
Menu: Checking for Intrusions, Listing Intrusion Alerts, and
Resetting Alert Flags
The menu interface indicates per-port intrusions in the Port Status screen, and
provides details and the reset function in the Intrusion Log screen.
1. From the Main Menu select:
1. Status and Counters
4. Port Status
The Intrusion Alert
column shows “Yes”
for any port on which
a security violation
has been detected.
Figure 9-14. Example of Port Status Screen with Intrusion Alert on Port A3
9-30
Содержание ProCurve 2800 Series
Страница 2: ......
Страница 24: ...Getting Started To Set Up and Install the Switch in Your Network This page is intentionally unused 1 12 ...
Страница 44: ...Configuring Username and Password Security Front Panel Security This page is intentionally unused 2 20 ...
Страница 132: ...RADIUS Authentication and Accounting Messages Related to RADIUS Operation This page is intentionally unused 5 32 ...
Страница 182: ...Configuring Secure Socket Layer SSL Common Errors in SSL setup This page is intentionally unused 7 22 ...
Страница 268: ...Configuring and Monitoring Port Security Operating Notes for Port Security This page is intentionally unused 9 38 ...
Страница 299: ......