Ethernet SNMP Module Installation and Reference Guide ( J2603B) 1995-10
Setting Inbound Security with
Intruder Prevention
The picture below illustrates the use of inbound security using Intruder
Prevention. This type of data security allows only one authorized user per
port to access the network. The authorized user is identified by the
authorized station address of the end node attached to the port.
Intruder prevention includes an “auto port disable” data security feature and
a “send alarm” security violation notification feature. These features are
described on the next page.
In the above illustration, the authorized end user is represented by PC 101,
and the intruder is represented by PC 202. (For illustration purposes, the
numbers 101, and 202 are used to represent 12-digit hexadecimal station
addresses.) The HP AdvanceStack hub compares the authorized station
address, 101, to the source address of the packet received by the Intruder,
202. The hub detects the unauthorized station address and automatically
disables the port, and sends an alarm (a security violation trap notification)
to the authorized network management station.
Security Information
Security Information
C-4










