EasyManua.ls Logo

Alcatel-Lucent OmniSwitch 6800 Series - Configuring Network Security; Creating Monitoring-Group and Associating Port Range; Disassociating Port Range from Monitoring-Group; Configuring Anomaly to be Monitored

Alcatel-Lucent OmniSwitch 6800 Series
926 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Loading...
Configuring Network Security Configuring Network Security
page 39-6 OmniSwitch 6800/6850/9000 Network Configuration Guide March 2008
Configuring Network Security
The following subsections describe how to configure Network Security using CLI commands.
Creating monitoring-group and associating port range
The netsec group port command is used to create a monitoring-group and configure the port associations
for that group.
To associate a single port with the monitoring-group, enter netsec group followed by the group name and
port followed by the slot number, a slash(/),and the port number. For example, to associate port 3 on slot 2
with monitoring-group called “group1”, enter:
-> netsec group group1 port 2/3
To associate a range of ports with a monitoring-group, enter netsec group followed by the group name
and port followed by the slot number, a slash(/), the first port number, a hyphen(-), and the last port
number. For example, to associate ports 3 through 5 on slot 2 with monitoring-group “group1”, enter:
-> netsec group group1 port 2/3-5
Disassociating port range from monitoring-group
To disassociate a single port from the monitoring-group, enter no netsec group followed by the group
name and port followed by the slot number, a slash(/), and the port number. For example, to disassociate
port 3 on slot 2 from the monitoring-group “group1”, enter:
-> no netsec group group1 port 2/3
To disassociate a range of ports from the monitoring-group, enter no netsec group followed by the group
name and port followed by the slot number, a slash(/), the first port number, a hyphen(-), and the last port
number. For example, to disassociate ports 3 through 5 on slot 2 from the monitoring-group “group1”,
enter:
-> no netsec group group1 port 2/3-5
Configuring anomaly to be monitored
The netsec group anomaly command allows you to specify the anomaly to be monitored for the monitor-
ing-group and configure the various anomaly parameters of a monitoring-group.
The following table lists the netsec group anomaly command options for specifying anomalies:
anomaly name
arp-addr-scan
arp-flood
arp-failure
icmp-addr-scan
icmp-flood
icmp-unreachable

Table of Contents

Other manuals for Alcatel-Lucent OmniSwitch 6800 Series

Related product manuals