Configuring Tcp Proxy - HP A6600 Configuration Manual

Hide thumbs Also See for A6600:
Table of Contents

Advertisement

RAWIP sessions
RAWIP session establishment rate
[Router-GigabitEthernet1/0/1]
gigabitethernet 1/0/1 outbound
------------------------------------------------------------
Interface
------------------------------------------------------------
Total number of existing sessions
Session establishment rate
TCP sessions
Half-open TCP sessions
Half-close TCP sessions
TCP session establishment rate
UDP sessions
UDP session establishment rate
ICMP sessions
ICMP session establishment rate
RAWIP sessions
RAWIP session establishment rate
The output shows that on GigabitEthernet 1/0/1, there is a large number of UDP packets destined for
10.1.1.2, and the session establishment rate has exceeded the specified threshold. Therefore, determine
that the server is under a UDP flood attack. Use display attack-defense statistics to view the related
statistics collected after the UDP flood protection function takes effect.

Configuring TCP proxy

Network requirements
Configure the TCP proxy function on the router to protect internal servers from SYN flood attacks.
Configure the function to work in bidirectional mode.
Figure 139 Network diagram for configuring TCP proxy
Configuration procedure
# Configure IP addresses for interfaces. (Omitted)
# Create attack protection policy 1.
<Router> system-view
display
Flow Statistics Information
: 0
: 0/s
flow-statistics
: GigabitEthernet1/0/1
: 13676
: 2735/s
: 0
: 0
: 0
: 0/s
: 13676
: 2735/s
: 0
: 0/s
: 0
: 0/s
403
statistics
interface

Advertisement

Table of Contents
loading

Table of Contents