Security-Suite Deny Martian-Addresses - 3Com 3CRUS2475 Command Reference Manual

Unified gigabit wireless poe switch 24
Hide thumbs Also See for 3CRUS2475:
Table of Contents

Advertisement

146
C
9: Q
HAPTER
O
security-suite deny
martian-addresses
S C
OMMANDS
Command Mode
Global Configuration mode
User Guidelines
The following table describes a list of DoS attacks and the protection
type:
Attack
Stacheldraht
Distribution DoS attack
Invasor Trojan
Back Orifice Trojan
Example
The following example protects the system from the Invasor Trojan.
Console(config)# security-suite dos protect add
invasor-trojan
The security-suite deny martian-addresses Global Configuration
mode command denies packets containing reserved IP addresses. Use the
no form of this command to permit those addresses.
Syntax
security-suite deny martian-addresses {reserved | add {ip-address
{mask | prefix-length}} | remove {ip-address {mask | prefix-length}}
no security-suite deny martian-addresses
Parameters
ip-address — Specify the packets to discard, with that IP address as
the source IP address or the destination IP address.
mask — Specifies the network mask of the IP address.
prefix-length — Specifies the number of bits that comprise the IP
address prefix. The prefix length must be preceded by a forward slash
(/).
Keyword
Protection
stacheldraht
Discard TCP packets with source TCP
port equal to 16660.
invasor-trojan
Discard TCP packets with destination
TCP port equal to 2140 and source
TCP port equal to 1024.
back-orifice-tr
Discard UDP packets with destination
ojan
UDP port equal to 31337 and source
UDP port equal to 1024.

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents