Web Management Guide-R04

Table Of Contents
Chapter 12
| Security Measures
DoS Protection
– 367 –
Web Interface
To display port authenticator statistics for 802.1X:
1. Click Security, Port Authentication.
2. Select Show Statistics from the Step list.
Figure 228: Showing Statistics for 802.1X Port Authenticator
DoS Protection
Use the Security > DoS Protection page to protect against denial-of-service (DoS)
attacks. A DoS attack is an attempt to block the services provided by a computer or
network resource. This kind of attack tries to prevent an Internet site or service from
functioning efficiently or at all. In general, DoS attacks are implemented by either
forcing the target to reset, to consume most of its resources so that it can no longer
provide its intended service, or to obstruct the communication media between the
intended users and the target so that they can no longer communicate adequately.
This section describes how to protect against DoS attacks.
Parameters
These parameters are displayed:
LAND Attack – Configures the switch to protect against DoS LAND
(Local Area Network Denial) attacks in which hackers send spoofed-IP
packets where the source and destination address are the same,
thereby causing the target to reply to itself continuously.
(Default: Disabled)
TCP Null Scan – A TCP NULL scan message is used to identify listening TCP
ports. The scan uses a series of strangely configured TCP packets which contain
a sequence number of 0 and no flags. If the target's TCP port is closed, the
target replies with a TCP RST (reset) packet. If the target TCP port is open, it
simply discards the TCP NULL scan. (Default:
Disabled)