beautypg.com

Verifying the configuration – H3C Technologies H3C SecPath F1000-E User Manual

Page 17

background image

9

Figure 10 Enabling Land and Smurf attack detection for the untrusted zone

3.

Select Untrust from the Zone list, select Discard Packets when the specified attack is detected, select
Enable Land Attack Detection, select Enable Smurf Attack Detection, click Apply.

Verifying the configuration

Verify that SecPath can detect Land and Smurf attacks from the untrusted zone, output alarm logs

accordingly, and drop the attack packets. You can select Intrusion Detection > Statistics from the
navigation tree to view the number of Land and Smurf attacks and the number of dropped attack packets.