![SignaMax 065-7434 Скачать руководство пользователя страница 277](http://html.mh-extra.com/html/signamax/065-7434/065-7434_configuration-manual_1268429277.webp)
277
SIGNAMAX LLC • www.signamax.eu
Step2:
Compared with the above statistical information, users can find that the port0/3
suffers attack; enable the host-level monitoring on the port0/3, and configure the upper limit
value of each host’s broadcast packets that need to be processed by the CPU in a period as
100.
Command
Description
switch (config-port-0/3)# monitor host enable
To enter the port
switch(config-port-0/3)# monitor host limit broadcast -packet 100
To enable the host level
monitoring
After configuration, wait a moment. The print information alarms on the shell to notice that
the host C is written into the black list:
Monitor: Add host MAC address 00:03:4B:40:DB:0A into broadcast blacklist for port 0/3 .
We can know that the host C initiated the attack on the switch.
Step3:
Users can view the host who initiates the attack by displaying the blacklist:
switch# show monitor blacklist
---------------------------------------------------------------------------------------
Entry Port MAC Address Total Forward Broadcast Multicast Admin Other
---------------------------------------------------------------------------------------
1 0/3 00:03:4B:40:DB:0A BLACK
Step4:
Users can observe detailed situation of the host connected to each port:
switch(config-port-0/3)# show monitor host broadcast-packet
------------------------------------------------------------------------------------------
Entry MAC Address Type Black Limit Count DropCount Amount DropAmount
--------------------------------------------------------------------------------------
1 00:05:5D:A4:F9:53 Broadcast FALSE 100 0 0 45 0
2 00:03:4B:40:DB:0A Broadcast TRUE 100 9991 9891 103034 101834
The host 00:03:4B:40:DB:0A is written into the black list. It can only transmit half of the limit
packets in this period, i.e. 50. The other packets are discarded. Because the total amount of
the transmitted packets to be processed by CPU is already over 100 and reaches 9991, the
host is still in the blacklist in the next period, and is permitted to transmit 50.
Содержание 065-7434
Страница 1: ...24 Port 10 100 L3 Switch Model 065 7434 Configuration Guide Revision A1 ...
Страница 245: ...245 SIGNAMAX LLC www signamax eu Application Example Example of configuring DHCP Snooping ...
Страница 302: ...302 SIGNAMAX LLC www signamax eu Default status no switching interface ...
Страница 368: ......
Страница 655: ...287 SIGNAMAX LLC www signamax eu Sub VLAN members in the system ...