Allied Telesis Layer 3 Switches Manual do Utilizador

Consulte online ou descarregue Manual do Utilizador para Comutadores de rede Allied Telesis Layer 3 Switches. How To Create A Secure Network With Allied Telesis Managed Manual do Utilizador

  • Descarregar
  • Adicionar aos meus manuais
  • Imprimir
  • Página
    / 31
  • Índice
  • MARCADORES
  • Avaliado. / 5. Com base em avaliações de clientes
Vista de página 0
C613-16103-00 REV A
www.alliedtelesis.com
How To |
Introduction
Allied Telesis switches include a range of sophisticated security features at layer 2 and layer 3.
This How To Note describes these features and includes brief examples of how to configure
them.
The implementations shown in this How To Note should be thought of as industry-standard
best practices.
Contents
Introduction .............................................................................................................................................. 1
Which products and software versions does this information apply to? ................................... 2
Securing the device ................................................................................................................................. 3
Protecting the network .......................................................................................................................... 3
Protecting against packet flooding ................................................................................................ 3
Protecting against rapid MAC movement ................................................................................... 6
Controlling multicast traffic ........................................................................................................... 7
Managing the device securely ................................................................................................................ 9
Using Secure Shell (SSH) ................................................................................................................ 9
Using SSL for secure web access ................................................................................................ 10
Using SNMPv3 ................................................................................................................................ 10
Whitelisting telnet hosts .............................................................................................................. 12
Identifying the user ................................................................................................................................ 14
IP spoofing and tracking ................................................................................................................ 14
Rejecting Gratuitous ARP (GARP) ............................................................................................ 15
DHCP snooping ............................................................................................................................. 15
Using 802.
1
x port authentication ............................................................................................... 17
Protecting the user ................................................................................................................................ 18
Using private VLANs ..................................................................................................................... 18
Using local proxy ARP and MAC-forced forwarding ............................................................. 19
Using IPsec to make VPNs ........................................................................................................... 24
Protecting against worms ............................................................................................................. 25
Create A Secure Network With Allied Telesis
Managed Layer 3 Switches
Vista de página 0
1 2 3 4 5 6 ... 30 31

Resumo do Conteúdo

Página 1 - Managed Layer 3 Switches

C613-16103-00 REV Awww.alliedtelesis.comHow To |IntroductionAllied Telesis switches include a range of sophisticated security features at layer 2 and

Página 2

Managing the device securelyCreate A Secure Network With Allied Telesis Managed Layer 3 Switches 10Using SSL for secure web accessIf you prefer to con

Página 3 - Protecting the network

Create A Secure Network With Allied Telesis Managed Layer 3 Switches 11Managing the device securelyExamplesTo allow the user “steve” full read, write

Página 4 - Bandwidth limiting

Managing the device securelyCreate A Secure Network With Allied Telesis Managed Layer 3 Switches 12Whitelisting telnet hostsFor any remote management

Página 5

Create A Secure Network With Allied Telesis Managed Layer 3 Switches 13Managing the device securelyBuilding a whitelist through QoSOn AT-8948, AT-9900

Página 6

Identifying the userCreate A Secure Network With Allied Telesis Managed Layer 3 Switches 14Identifying the userThis section describes methods for auth

Página 7 - Controlling multicast traffic

Create A Secure Network With Allied Telesis Managed Layer 3 Switches 15Identifying the userRejecting Gratuitous ARP (GARP)Hosts can use GARP to announ

Página 8 - IGMP throttling

Identifying the userCreate A Secure Network With Allied Telesis Managed Layer 3 Switches 16For more information about setting up DHCP snooping, see Ho

Página 9

Create A Secure Network With Allied Telesis Managed Layer 3 Switches 17Identifying the userUsing DHCP snooping to track clientsIf your DHCP server sup

Página 10 - Using SNMPv3

Protecting the userCreate A Secure Network With Allied Telesis Managed Layer 3 Switches 18Protecting the userThis section describes the following meth

Página 11 - Managing the device securely

Create A Secure Network With Allied Telesis Managed Layer 3 Switches 19Protecting the userExampleTo create a private VLAN with ports 2-6 in it, with a

Página 12 - Whitelisting telnet hosts

Which products and software versions does this information apply to?Create A Secure Network With Allied Telesis Managed Layer 3 Switches 2Appendix: Co

Página 13

Protecting the userCreate A Secure Network With Allied Telesis Managed Layer 3 Switches 20The following figure shows a network that can use either loc

Página 14 - Identifying the user

Create A Secure Network With Allied Telesis Managed Layer 3 Switches 21Protecting the userConfigurationof edgeswitches1. Create the VLANs, specifying

Página 15 - DHCP snooping

Protecting the userCreate A Secure Network With Allied Telesis Managed Layer 3 Switches 22Use the following configuration for edge switches 2 and 3 (A

Página 16 - Setting up DHCP snooping

Create A Secure Network With Allied Telesis Managed Layer 3 Switches 23Protecting the user# Create a classifier to match all traffic in VLANs 101-104c

Página 17 - Using 802

Protecting the userCreate A Secure Network With Allied Telesis Managed Layer 3 Switches 24Configurationof edgeswitches1. Create a VLAN for each type o

Página 18 - Protecting the user

Create A Secure Network With Allied Telesis Managed Layer 3 Switches 25Protecting the userz How To Configure Microsoft® Windows XP Virtual Private Net

Página 19

Protecting the userCreate A Secure Network With Allied Telesis Managed Layer 3 Switches 26To block the W32.Slammer worm on port 1, which does not have

Página 20 - Local proxy ARP

Create A Secure Network With Allied Telesis Managed Layer 3 Switches 27Appendix: Configuration scripts for MAC-forced forwarding exampleAppendix: Conf

Página 21

Appendix: Configuration scripts for MAC-forced forwarding exampleCreate A Secure Network With Allied Telesis Managed Layer 3 Switches 28Edge switch 2E

Página 22

Create A Secure Network With Allied Telesis Managed Layer 3 Switches 29Appendix: Configuration scripts for MAC-forced forwarding exampleEdge switch 3E

Página 23 - MAC-Forced Forwarding (MACFF)

Create A Secure Network With Allied Telesis Managed Layer 3 Switches 3Securing the deviceSecuring the deviceThe first step towards making a secure net

Página 24 - Using IPsec to make VPNs

Appendix: Configuration scripts for MAC-forced forwarding exampleCreate A Secure Network With Allied Telesis Managed Layer 3 Switches 30Access Routers

Página 25 - Protecting against worms

USA Headquar ters | 19800 Nor th Cr eek Parkwa y | Suite 200 | Bothell | WA 98011 | USA | T: +1 800 424 4284 | F: +1 425 481 3895

Página 26

Protecting the networkCreate A Secure Network With Allied Telesis Managed Layer 3 Switches 4Service providers need to prevent storms from disrupting s

Página 27 - Edge switch

Create A Secure Network With Allied Telesis Managed Layer 3 Switches 5Protecting the networkUsing QoS policy-based storm protectionPolicy-based storm

Página 28 - Edge switch 2

Protecting the networkCreate A Secure Network With Allied Telesis Managed Layer 3 Switches 6ExampleThe following example applies storm protection to c

Página 29 - Edge switch 3

Create A Secure Network With Allied Telesis Managed Layer 3 Switches 7Protecting the network2. Set the sensitivity in detecting rapid MAC movement, by

Página 30 - Access Router

Protecting the networkCreate A Secure Network With Allied Telesis Managed Layer 3 Switches 8IGMP filteringIGMP filtering lets you dictate exactly whic

Página 31 - C613-16103-00 REV A

Create A Secure Network With Allied Telesis Managed Layer 3 Switches 9Managing the device securelyManaging the device securelyIn Ethernet and broadcas

Comentários a estes Manuais

Sem comentários