Cisco 500 Series Administration Manual page 470

Stackable managed
Hide thumbs Also See for 500 Series:
Table of Contents

Advertisement

Security
Denial of Service Prevention
STEP 1
STEP 2
STEP 3
STEP 4
STEP 1
STEP 2
STEP 3
Cisco 500 Series Stackable Managed Switch Administration Guide
To define SYN rate protection:
Click Security > Denial of Service Prevention > SYN Rate Protection.
This page appears the SYN rate protection currently defined per interface.
Click Add.
Enter the parameters.
Interface—Select the interface on which the rate protection is being
defined.
IP Address—Enter the IP address for which the SYN rate protection is
defined or select All Addresses. If you enter the IP address, enter either the
mask or prefix length.
Network Mask—Select the format for the subnet mask for the source IP
address, and enter a value in one of the field:
-
Mask—Select the subnet to which the source IP address belongs and
enter the subnet mask in dotted decimal format.
-
Prefix Length—Select the Prefix Length and enter the number of bits that
comprise the source IP address prefix.
SYN Rate Limit—Enter the number of SYN packets that be received.
Click Apply. The SYN rate protection is defined, and the Running Configuration is
updated.
ICMP Filtering
The ICMP Filtering page enables the blocking of ICMP packets from certain
sources. This can reduce the load on the network in case of an ICMP attack.
To define ICMP filtering:
Click Security > Denial of Service Prevention > ICMP Filtering.
Click Add.
Enter the parameters.
Interface—Select the interface on which the ICMP filtering is being defined.
21
468

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents