Anti-attack processing method of three-layer ethernet switchboard
A processing method and switch technology, which is applied in the field of Ethernet communication, can solve problems such as occupying the CPU, failure to process events normally, and affecting the normal sending and receiving and processing of protocol packets.
- Summary
- Abstract
- Description
- Claims
- Application Information
AI Technical Summary
Problems solved by technology
Method used
Image
Examples
Embodiment Construction
[0026] The present invention will be further described in detail below in conjunction with the accompanying drawings and specific embodiments.
[0027] This embodiment only considers that the target IP address received by the switch CPU is the address in the directly connected network segment of the switch, and when the target IP address is not the interface address of the switch, the data packet will not impact the CPU and will not cause an attack.
[0028] If at a certain moment, the switch CPU receives a common data packet (non-ARP packet), but does not learn the ARP information of the destination IP address of the data packet.
[0029] The ARP information is learned from the ARP protocol packet sent by the device. The switch may not have received the ARP packet from the device before, or it may have received the ARP packet before and learned ARP from it, but it has aged after the aging time.
[0030] Such as figure 2 As shown in the process flow, the processing steps are...
PUM
Login to View More Abstract
Description
Claims
Application Information
Login to View More 