D-Link DSA-3200 Technical Information Page 295

  • Download
  • Add to my manuals
  • Print
  • Page
    / 321
  • Table of contents
  • BOOKMARKS
  • Rated. / 5. Based on customer reviews
Page view 294
xStack
®
DGS-3200 Series Layer 2 Managed Gigabit Ethernet Switch Web UI Reference Guide
281
Figure 5
Prevent ARP Spoofing via Packet Content ACL
D-Link managed switches can effectively mitigate common DoS attacks caused by ARP spoofing via a unique Package Content
ACL.
For the reason that basic ACL can only filter ARP packets based on packet type, VLAN ID, Source, and Destination MAC
information, there is a need for further inspections of ARP packets. To prevent ARP spoofing attack, we will demonstrate here via
using Packet Content ACL on the Switch to block the invalid ARP packets which contain faked gateway’s MAC and IP binding.
Example topology
Configuration
Page view 294
1 2 ... 290 291 292 293 294 295 296 297 298 299 300 ... 320 321

Comments to this Manuals

No comments