Alcatel OS6602-48 Guia do Utilizador Página 526

  • Descarregar
  • Adicionar aos meus manuais
  • Imprimir
  • Página
    / 628
  • Índice
  • MARCADORES
  • Avaliado. / 5. Com base em avaliações de clientes
Vista de página 525
Using ACL Security Features Configuring ACLs
page 24-18 OmniSwitch 6600 Family Network Configuration Guide April 2005
Configuring a DisablePorts ACL
An additional method for dealing with spoofed IP traffic is to create a DisablePorts ACL that will adminis-
tratively disable ports that receive this type of traffic. To achieve this result, a policy action called
stringDisablePorts is available. Note that string represents text that the user enters as a required part of
the policy action and must be followed by DisablePorts (e.g., badDisablePorts).
Note the following when using the DisablePorts action:
Only routed traffic is affected by this action.
The DisablePorts action must be specified using the capitalization shown here and in the example ACL
below.
A disposition is not required with DisablePorts because a drop action is implied and interpreted as a
disable port function.
To restore disabled ports to enabled status, disconnect and reconnect the cable or use the
interfaces admin command to administratively enable the ports.
This feature can be used with source IP addresses and source MAC addresses.
A source IP address DisablePorts rule will disable a port that receives an IP packet that contains a
source IP address that does not match the rule or an ARP packet that contains a source protocol address
field that does not match the rule.
A source MAC address DisablePorts rule will disable a port that receives an IP packet that contains a
source MAC address that does not match the rule.
The DisablePorts action and the UserPorts port group are not mutually exclusive, both can be used
together in the same ACL.
Use the following steps to create a DisablePorts ACL that only allows traffic from a specific IP subnet on
specific source ports and disables those ports that receive traffic from other subnets. Two rules are
involved with this type of ACL: one rule denies all source IP addresses on certain ports and a second,
higher precedence rule only allows traffic from a specific subnet on those same ports.
1 Create a port group that identifies the ports to which the rule will apply. For example:
-> policy port group edgePorts 1/1-24 2/1-24
2 Create a condition that specifies all source IP addresses combined with a source port group that
contains the ports identified in Step 1. For example:
-> policy condition denyip source ip address 0.0.0.0 mask 0.0.0.0 source port
group edgePorts
3 Create another condition that specifies only IP addresses within a desired subnet combined with a
source port group that contains the ports identified in Step 1. For example:
-> policy condition allowip source ip address 198.18.1.0 mask 255.255.255.0
source port group edgePorts
4 Create a DisablePorts action with a string prefix, such as badDisablePorts, and an accept action. For
example:
-> policy action badDisablePorts
-> policy action PASS disposition accept
Vista de página 525
1 2 ... 521 522 523 524 525 526 527 528 529 530 531 ... 627 628

Comentários a estes Manuais

Sem comentários

Flex TPO PS Coverstrip Handbücher

Bedienungsanleitungen und Benutzerhandbücher für Hardware Flex TPO PS Coverstrip.
Wir stellen 1 PDF-Handbücher Flex TPO PS Coverstrip zum kostenlosen herunterladen nach Dokumenttypen zur Verfügung Bedienungsanleitung


Flex TPO PS Coverstrip Bedienungsanleitung (2 Seiten)


Marke: Flex | Kategorie: Hardware | Größe: 0.07 MB |

 

Inhaltsverzeichnis





Weitere Produkte und Handbücher für Hardware Flex

Modelle Dokumententyp
TPO Plus T-joint Cove Bedienungsanleitung   Flex TPO Plus T-joint Cove User Manual, 1 Seiten
TPO Split Pipe Boots Bedienungsanleitung   Flex TPO Split Pipe Boots User Manual, 2 Seiten
TPO Square Tube Wrap Bedienungsanleitung   Flex TPO Square Tube Wrap User Manual, 2 Seiten
TPO Walkway Pad Bedienungsanleitung   Flex TPO Walkway Pad User Manual, 1 Seiten
OlyLok Locking Impact Nail Bedienungsanleitung   Flex OlyLok Locking Impact Nail User Manual, 2 Seiten
TPO Clad Metal Bedienungsanleitung   Flex TPO Clad Metal User Manual, 1 Seiten
Retrofit Drain Clamping Ring Bedienungsanleitung   Flex Retrofit Drain Clamping Ring User Manual, 2 Seiten
Retrofit Drain PVC Coated Flange Bedienungsanleitung   Flex Retrofit Drain PVC Coated Flange User Manual, 2 Seiten
Components Listing Bedienungsanleitung   Flex Components Listing User Manual, 5 Seiten
Single Ply Roofing Systems Bedienungsanleitung   Flex Single Ply Roofing Systems User Manual, 1 Seiten
FLC Coping Bedienungsanleitung   Flex FLC Coping User Manual, 30 Seiten
Base Fastening 7-7-7 Bedienungsanleitung   Flex Base Fastening 7-7-7 User Manual, 1 Seiten
FLT Roof Edge Bedienungsanleitung   Flex FLT Roof Edge User Manual [en] , 5 Seiten
FLE Extended Roof Edge Bedienungsanleitung   Flex FLE Extended Roof Edge User Manual, 5 Seiten
Base Fastening 9-18-18 Bedienungsanleitung   Flex Base Fastening 9-18-18 User Manual, 1 Seiten
FLE Roof Edge Bedienungsanleitung   Flex FLE Roof Edge User Manual, 9 Seiten
FLE-HG Roof Edge Bedienungsanleitung   Flex FLE-HG Roof Edge User Manual, 7 Seiten
FLS Roof Edge Bedienungsanleitung   Flex FLS Roof Edge User Manual, 5 Seiten