Traffic/Security Filters and Monitors

Filter Types and Operation

ProCurve(config)# show filter 26

Traffic/Security Filters

Filter Type : Source Port

Source Port : 1

Dest Port Type Action

---------

--------- + ------------------------

1

10/100TX

Forward

2

10/100TX

Forward

3

10/100TX

Forward

4

10/100TX

Forward

5

10/100TX

Forward

6

10/100TX

Forward

7

10/100TX

Drop

8

10/100TX

Forward

9

10/100TX

Forward

10

10/100TX

Drop

11

10/100TX

Drop

12

10/100TX

Forward

.

.

.

Figure 9-9. Example of Source Port Filtering with Internet Traffic

As the company grows, more resources are required in accounting. Two additional accounting workstations are added and attached to ports 12 and 13. A second server is added attached to port8.

Network Design

1.Accounting Workstations may only send traffic to the Accounting Server.

2.No Internet traffic may be sent to the Accounting Server or Workstations.

3All other switch ports may only send traffic to Port 1.

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

Accounting Workstation 1

 

 

 

 

 

 

Port 10

Port 1

 

Router to the

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

Accounting Workstation 2

 

 

 

 

 

 

 

 

 

 

 

Port 11

 

 

 

Internet

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

Accounting Workstation 3

 

 

 

 

 

 

 

 

 

 

Port 12

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

Port 13

Port 7

 

Accounting Server 1

Accounting Workstation 4

 

 

 

 

 

 

 

 

Port 8

 

 

Accounting Server 2

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

Figure 9-10. Expanded Network Configuration for Named Source-Port Filters Example

9-13