Qtech QSW-8200-52T-AC — настройка предотвращения ARP-сканирования: руководство пользователя [35/47]

Превью страниц Страница 35 / 47
Qtech QSW-8200-52T-POEAC- DC [35/47] Anti arpscan recovery time
User Manual
Chapter 2. Commands for ARP Scanning Prevention 35
www.qtech.ru
Function: Configure trusted IP;” no anti-arpscan trust ip <ip-address>
[<netmask>]”command reset the IP to non-trustful IP.
Parameters: <ip-address>: Configure trusted IP address; <netmask>: Net mask of the
IP.
Default Settings: By default all the IP are non-trustful. Default mask is 255.255.255.255
Command Mode: Global configuration mode
User Guide: If a port is configured as a trusted port, then the ARP scanning prevention
function will not deal with this port, even if the rate of received ARP messages exceeds
the set threshold, this port will not be closed. If the port is already closed by ARP
scanning prevention, its traffic will be recovered right immediately.
Example: Set 192.168.1.0/24 as trusted IP.
Switch(config)#anti-arpscan trust ip 192.168.1.0 255.255.255.0
2.6 anti-arpscan recovery enable
Command: anti-arpscan recovery enable
no anti-arpscan recovery enable
Function: Enable the automatic recovery function, no anti-arpscan recovery enable
command will disable the function.
Parameters: None
Default Settings: Enable the automatic recovery function
Command Mode: Global configuration mode
User Guide: If the users want the normal state to be recovered after a while the port is
closed or the IP is disabled, they can configure this function.
Example: Enable the automatic recovery function of the switch.
Switch(config)#anti-arpscan recovery enable
2.7 anti-arpscan recovery time
Command: anti-arpscan recovery time <seconds>
no anti-arpscan recovery time
Function: Configure automatic recovery time; no anti-arpscan recovery time
command resets the automatic recovery time to default value.
Parameters: Automatic recovery time, in second ranging from 5 to 86400.
Default Settings: 300 seconds.
Command Mode: Global configuration mode
User Guide: Automatic recovery function should be enabled first.
Example: Set the automatic recovery time as 3600 seconds.
Switch(config)#anti-arpscan recovery time 3600

Содержание

Узнайте, как настроить доверенные IP-адреса и функции автоматического восстановления для предотвращения ARP-сканирования в вашем сетевом оборудовании.

Скачать