ECS4660-28F_Management Guide-R03

Table Of Contents
C
HAPTER
13
| Security Measures
DoS Protection
– 431 –
WEB INTERFACE
To display port authenticator statistics for 802.1X:
1. Click Security, Port Authentication.
2. Select Show Statistics from the Step list.
Figure 223: Showing Statistics for 802.1X Port Authenticator
DOS PROTECTION
Use the Security > DoS Protection page to protect against denial-of-service
(DoS) attacks. A DoS attack is an attempt to block the services provided by
a computer or network resource. This kind of attack tries to prevent an
Internet site or service from functioning efficiently or at all. In general, DoS
attacks are implemented by either forcing the target to reset, to consume
most of its resources so that it can no longer provide its intended service,
or to obstruct the communication media between the intended users and
the target so that they can no longer communicate adequately. This section
describes how to protect against DoS attacks.
CLI REFERENCES
"Denial of Service Protection" on page 947
PARAMETERS
These parameters are displayed:
LAND Attack – Configures the switch to protect against DoS LAND
(Local Area Network Denial) attacks in which hackers send spoofed-IP
packets where the source and destination address are the same,
thereby causing the target to reply to itself continuously.
(Default: Enabled)
TCP Null Scan – A TCP NULL scan message is used to identify listening
TCP ports. The scan uses a series of strangely configured TCP packets
which contain a sequence number of 0 and no flags. If the target's TCP