Attacks - Dell PowerConnect J-EX4200-24T Software Manual

J series; j-ex series
Table of Contents

Advertisement

Dell PowerConnect J-Series Ethernet Switch Complete Software Guide for Junos OS
Related
Documentation
Example: Configuring MAC Limiting, Including Dynamic and Allowed MAC Addresses,
to Protect the Switch from Ethernet Switching Table Overflow Attacks
Requirements
2576
Example: Configuring DHCP Snooping, DAI , and MAC Limiting on a J-EX Series Switch
with Access to a DHCP Server Through a Second Switch on page 2593
Example: Configuring a DHCP Server Interface as Untrusted to Protect the Switch from
Rogue DHCP Server Attacks on page 2579
Example: Configuring Allowed MAC Addresses to Protect the Switch from DHCP
Snooping Database Alteration Attacks on page 2590
Example: Configuring DHCP Snooping and DAI to Protect the Switch from ARP Spoofing
Attacks on page 2586
Example: Configuring MAC Limiting, Including Dynamic and Allowed MAC Addresses,
to Protect the Switch from Ethernet Switching Table Overflow Attacks on page 2576
Example: Configuring MAC Limiting to Protect the Switch from DHCP Starvation Attacks
on page 2583
Configuring Port Security (CLI Procedure) on page 2626
Configuring Port Security (J-Web Procedure) on page 2627
In an Ethernet switching table overflow attack, an intruder sends so many requests from
new MAC addresses that the Ethernet switching table fills up and then overflows, forcing
the switch to broadcast all messages.
This example describes how to configure MAC limiting and allowed MAC addresses, two
port security features, to protect the switch from Ethernet switching table attacks:
Requirements on page 2576
Overview and Topology on page 2577
Configuration on page 2578
Verification on page 2579
This example uses the following hardware and software components:
One J-EX Series switch
A DHCP server to provide IP addresses to network devices on the switch
Before you configure specific port security features to mitigate common access-interface
attacks, be sure you have:
Connected the DHCP server to the switch.
Configured the VLAN
employee-vlan
with Multiple VLANs for J-EX Series Switches" on page 1070.
on the switch. See "Example: Setting Up Bridging

Advertisement

Table of Contents
loading

Table of Contents