This shows you the differences between two versions of the page.
Both sides previous revision Previous revision Next revision | Previous revision | ||
ddos:flowspec [2019/07/25 12:11] rb [Пример настройки на Juniper] |
ddos:flowspec [2020/07/30 10:12] (current) rb ↷ Page moved and renamed from ddos-flowspec to ddos:flowspec |
||
---|---|---|---|
Line 5: | Line 5: | ||
Правила для фильтрации: | Правила для фильтрации: | ||
- | * destination | + | * Destination |
- | * source | + | * Source |
- | * IP protocols | + | * IP protocols |
- | * TCP/UDP ports (список исходящих портов или портов на которые защищать) | + | * Source or Destination port |
+ | * Destination port | ||
+ | * Source port | ||
* ICMP Type | * ICMP Type | ||
* ICMP Code | * ICMP Code | ||
* TCP Flags | * TCP Flags | ||
* Packet Length | * Packet Length | ||
- | * Diffserv Codepoint | + | * DSCP |
- | * Fragmentation | + | * Fragment encoding |
Действия которые можем применять: | Действия которые можем применять: | ||
- | * Rate Limit | + | * traffic-rate (0 for drop) |
- | * Traffic-Action | + | * Traffic-Action |
- | * Redirect | + | * Redirect |
- | * Traffic-Marking | + | * Traffic-Marking |
==== Пример настройки на Juniper ==== | ==== Пример настройки на Juniper ==== |