EasyManuals Logo
Home>HP>Switch>ProCurve 3400cl-24G

HP ProCurve 3400cl-24G Access Security Guide

HP ProCurve 3400cl-24G
404 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #67 background imageLoading...
Page #67 background image
Virus Throttling (5300xl Switches Only)
Basic Connection-Rate Filtering Configuration
Configuring the Per-Port Filtering Mode
Syntax: filter connection-rate < port-list > < notify-only | throttle | block >
no filter connection-rate < port-list >
Configures the per-port policy for responding to detection of a
relatively high number of inbound, routed IP connection
attempts from a given source. The level at which the switch
detects such traffic depends on the sensitivity setting config
-
ured by the connection-rate-filter sensitivity command (page
3-12). (Note: You can use connection-rate ACLs to create excep-
tions to the configured filtering policy. See “Configuring and
Applying Connection-Rate ACLs” on page 3-20.) The no form of
the command disables connection-rate filtering on the ports in #
< port-list >.
notify-only: If the switch detects a relatively high number of
routed IP connection attempts from a specific host, notify-only
generates an Event Log message. Sends a similar message to
any SNMP trap receivers configured on the switch.
throttle: If the switch detects a relatively high number of routed
IP connection attempts from a specific host, this option gener
-
ates the notify-only messaging and also blocks all routed traffic
inbound from the offending host for a penalty period. After the
penalty period, the switch allows routed traffic from the offend
-
ing host to resume, and re-examines the traffic. If the suspect
behavior continues, the switch again blocks the routed traffic
from the offending host and repeats the cycle. For the penalty
periods, refer to table
9-1, below.
block: If the switch detects a relatively high number of routed
IP connection attempts from a specific host, this option gener
-
ates the notify-only messaging and also blocks all routed and
switched traffic inbound from the offending host.
Table 9-1. Throttle Mode Penalty Periods
Throttle Mode Frequency of IP Mean Number of New Penalty Period
Connection Requests Destination Hosts in the
from the Same Source Frequency Period
Low < 0.1 second 54 < 30 seconds
Medium < 1.0 second 37 30 - 60 seconds
High < 1.0 second 22 60 - 90 seconds
Aggressive < 1.0 second 15 90 - 120 seconds
3-13

Table of Contents

Other manuals for HP ProCurve 3400cl-24G

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the HP ProCurve 3400cl-24G and is the answer not in the manual?

HP ProCurve 3400cl-24G Specifications

General IconGeneral
BrandHP
ModelProCurve 3400cl-24G
CategorySwitch
LanguageEnglish

Related product manuals