
Port Traffic Controls
All-Traffic Rate-Limiting for the 5300xl, 3400cl and 6400cl Switches
Ports B2-B5 are configured
with an ICMP rate limit of 1%.
The show config status
command compares the
content of the startup-config
and running-config files and
prints a report.
Figure 14-5. Example of ICMP Rate-Limit Settings Listed in the “show running” Output
ICMP Rate-Limiting Trap and Event Log Messages. If the switch
detects a volume of inbound ICMP traffic on a port that exceeds the ICMP
rate-limit configured for that port, it generates one SNMP trap and one
informational Event Log message to notify the system operator of the condi-
tion. (The trap and Event Log message are sent within two minutes of the when
the event occurred on the port.) For example:
I 06/30/05 11:15:42 RateLim: ICMP traffic exceeded
configured limit on port 1
These trap and Event Log messages provide an advisory that inbound ICMP
traffic on a given interface has exceeded the configured maximum. The
additional ICMP traffic is dropped, but the excess condition may indicate an
infected host (or other traffic threat or network problem) on that interface.
The system operator should investigate the attached devices or network
conditions further.
14-16
Comentários a estes Manuais