Filter and Firewall
Left running head:
Chapter name (automatic)
748
Beta Beta
OmniAccess 5740 Unified Services Gateway CLI Configuration Guide
Alcatel-Lucent
NETWORK ATTACK PREVENTION CONFIGURATION
Refer the following section to prevent network attack:
• “Network Attack Prevention Configuration Steps”
• “Network Attack Prevention Configuration Flow”
• “Network Attack Prevention Configuration Commands”
NETWORK ATTACK PREVENTION CONFIGURATION STEPS
This section lists the steps to be followed to prevent network attacks.
Step 1: Configure the match-lists with the common classifiers pre-configured.
(Refer to the chapter “Common Classifiers” in this guide).
Step 2: Enter the Firewall Sub Configuration Mode. See “To Enter Firewall
Configuration Mode”
Step 3: Configure DoS attack Object. This enters the Attack Sub Configuration
Mode. See “To Configure DoS Attack Object”
Step 4: Configure attacks to the configured attack object. See
“To Configure Default Attacks (Rate Limiting / Non-rate Limiting) for an Attack
Object”
OR
“To Configure All Attacks for an Attack Object (Including Default / Optional)”
OR
“To Configure Individual Attack for an Attack Object”
Step 5: Exit from the Attack Sub Configuration Mode
Step 6: Configure Firewall Policy. See “To Configure Firewall Policy”
• To create a DoS Rule inside a Firewall Policy. See “To Create a DoS Rule
Inside a Firewall Policy”
Attach a Firewall Policy to an Interface
Step 7: Enter into Interface Configuration Mode
ALU(config)# interface <name>
Example:
ALU(config)# interface GigabitEthernet3/0
ALU(config-if GigabitEthernet3/0)#