Netgear XCM8810 Chassis Hardware Installation Guide - Page 622
Usage Guidelines, Description, Syntax Description, Default, enable ip-security anomaly-protection ip
View all Netgear XCM8810 Chassis manuals
Add to My Manuals
Save this manual to your list of manuals |
Page 622 highlights
NETGEAR 8800 Chassis Switch CLI Manual Usage Guidelines This command enables ICMP size and fragment checking. This checking takes effect for both IPv4 and IPv6 TCP packets. When enabled, the switch drops ICMP packets if one of following condition is true: • Fragmented ICMP packets. • IPv4 ICMP pings packets with payload size greater than the maximum IPv4 ICMP-allowed size. (The maximum allowed size is configurable.) • IPv6 ICMP ping packets with payload size > the maximum IPv6 ICMP-allowed size. (The maximum allowed size is configurable.) enable ip-security anomaly-protection ip enable ip-security anomaly-protection ip { slot [ | all ] } Description Enables source and destination IP address checking. Syntax Description slot Specifies the slot. all Specifies all IP addresses, or all IP addresses in a particular state. Default The default is disabled. Usage Guidelines This command enables source and destination IP addresses checking. This checking takes effect for both IPv4 and IPv6 packets. When enabled, the switch drops IPv4/IPv6 packets if its source IP address are the same as the destination IP address. In most cases, the condition of source IP address being the same as the destination IP address indicates a Layer 3 protocol error. (These kind of errors are found in LAND attacks.) enable ip-security anomaly-protection l4port enable ip-security anomaly-protection l4port {slot [ | all ]} Description Enables TCP and UDP ports checking. 622 | Chapter 15. Security Commands