Cisco 11503 Administration Guide - Page 209
SYN Attacks, Zero Port Attacks, Illegal Src Attacks, Smurf Attacks, Last Attack Detected
UPC - 746320664958
View all Cisco 11503 manuals
Add to My Manuals
Save this manual to your list of manuals |
Page 209 highlights
Chapter 5 Configuring Simple Network Management Protocol (SNMP) Configuring Denial of Service (DoS) Table 5-3 Field Descriptions for the show dos Command Field Total Attacks Description The total number of DoS attacks detected since the CSS was booted. The type of attacks that are listed along with their number of occurrences are: • SYN Attacks - TCP connections that are initiated by a source but are not followed with an ACK frame to complete the three way TCP handshake • LAND Attacks - Packets that have identical source and destination addresses • Zero Port Attacks - Frames that contain source or destination TCP or UDP ports equal to zero Note Older SmartBits software may send frames containing source or destination ports equal to zero. The CSS logs them as DoS attacks and drops these frames. First Attack Detected Last Attack Detected • Illegal Src Attacks - Illegal source addresses • Illegal Dst Attacks - Illegal destination addresses • Smurf Attacks - Pings with a broadcast destination address The first time a DoS attack was detected. The last time a DoS attack was detected. OL-5647-02 Cisco Content Services Switch Administration Guide 5-27