Chapter 45 Security Feature Configuration; Introduction To Security Feature; Security Feature Configuration; Prevent Ip Spoofing Function Configuration Task Sequence - Planet WGSW-52040 Configuration Manual

48-port 10/100/1000base-t + 4-port 100/1000x sfp managed switch
Hide thumbs Also See for WGSW-52040:
Table of Contents

Advertisement

45.1 Introduction to Security Feature

Before introducing the security features, we here first introduce the DoS. The DoS is short for
Denial of Service, which is a simple but effective destructive attack on the internet. The server
under DoS attack will drop normal user data packet due to non-stop processing the attacker's
data packet, leading to the denial of the service and worse can lead to leak of sensitive data of
the server.'
Security feature refers to applications such as protocol check which is for protecting the server
from attacks such as DoS. The protocol check allows the user to drop matched packets based
on specified conditions. The security features provide several simple and effective protections
against Dos attacks while acting no influence on the linear forwarding performance of the
switch.

45.2 Security Feature Configuration

45.2.1 Prevent IP Spoofing Function Configuration
Task Sequence
1.Enable the IP spoofing function.
Command
Global Mode
[no] dosattack-check srcip-equal-dstip
enable
Chapter 45 Security Feature
Explanation
Enable/disable the function of checking if the
IP source address is the same as the
destination address.
45-168
Configuration

Advertisement

Table of Contents

Troubleshooting

loading

Table of Contents