Displaying And Maintaining Unresolvable Ip Attack Protection; Configuration Example - HP 5920 Series Configuration Manual

Hide thumbs Also See for 5920 Series:
Table of Contents

Advertisement

Displaying and maintaining unresolvable IP attack protection

Execute display commands in any view.
Task
Display ARP source suppression configuration information.

Configuration example

Network requirements
As shown in
20. Each area connects to the gateway (Device) through an access switch.
A large number of ARP requests are detected in the office area and are considered as the consequence
of an unresolvable IP attack. To prevent the attack, configure ARP source suppression or ARP blackhole
routing.
Figure 110 Network diagram
Configuration considerations
If the attack packets have the same source address, configure the ARP source suppression function as
follows:
1.
Enable ARP source suppression.
2.
Set the threshold to 100. If the number of unresolvable IP packets received from a host within 5
seconds exceeds 100, the device stops resolving packets from the host until the 5 seconds elapse.
If the attack packets have different source addresses, enable the ARP blackhole routing function on the
gateway.
Figure 1
10, a LAN contains two areas: an R&D area in VLAN 10 and an office area in VLAN
Command
display arp source-suppression
328

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

5900 series

Table of Contents