Figure 12-16 IP Source Guard
The following entries are displayed on this screen:
IP Source Guard Config
Port Select: Click the Select button to quick-select the corresponding port
based on the port number you entered.
Select: Select your desired port for configuration. It is multi-optional.
Port: Displays the port number.
Security Type: Select Security Type for the port.
Disable: Select this option to disable the IP Source Guard
feature for the port.
SIP: Only the packets with its source IP address and port
number matched to the IP-MAC binding rules can be
processed.
SIP+MAC: Only the packets with its source IP address,
source MAC address and port number matched to the
IP-MAC binding rules can be processed.
LAG: Displays the LAG to which the port belongs to.
12.4 DoS Defend
DoS (Denial of Service) Attack is to occupy the network bandwidth maliciously by the network
attackers or the evil programs sending a lot of service requests to the Host, which incurs an
abnormal service or even breakdown of the network.
With DoS Defend function enabled, the switch can analyze the specific fields of the IP packets and
distinguish the malicious DoS attack packets. Upon detecting the packets, the switch will discard
the illegal packets directly and limit the transmission rate of the legal packets if the over legal
packets may incur a breakdown of the network. The switch can defend several types of DoS attack
listed in the following table.
206