Ãë¾àÁ¡ID |
29159 |
À§Çèµµ |
30 |
Æ÷Æ® |
22 |
ÇÁ·ÎÅäÄÝ |
TCP |
ºÐ·ù |
CISCO |
»ó¼¼¼³¸í |
ÇØ´ç CISCO IOS´Â Directed Broadcasts°¡ Á¦ÇѵǾî ÀÖÁö ¾Ê´Ù. Directed Broadcast´Â Dos(Denial Of Service)ÀÇ ÀÏÁ¾ÀÎ Smurf °ø°Ý¿¡ ÁÖ·Î ¾²ÀÌ´Â ¹æ½ÄÀ¸·Î ¸ñÇ¥ÁöÁ¡¿¡ µµ´ÞÇϱâ Àü±îÁö Unicast ¹æ½ÄÀ¸·Î Àü¼ÛµÇ´Ù°¡ ÃÖÁ¾ ¶ó¿ìÅ͸¦ Åë°úÇÒ ¶§ ºñ·Î¼Ò Directed Broadcast¸¦ ¾Ë¾Æº¼ ¼ö ÀÖÀ¸¹Ç·Î ÀåÄ¡º°·Î ÀÌ·¯ÇÑ ÆÐŶÀ» Á¦ÇÑÇÒ ¼ö ÀÖµµ·Ï ¼³Á¤ÇÏ¿©¾ß ÇÑ´Ù.
* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû: CISCO IOS |
ÇØ°áÃ¥ |
´ÙÀ½°ú °°ÀÌ Directed-broadcast¸¦ Â÷´ÜÇÑ´Ù. Router# config terminal Router(config)# interface fastethernet 0/1 Router(config-if)# no ip directed-broadcast.
¶Ç´Â ´ÙÀ½°ú °°ÀÌ access-list¸¦ ¼³Á¤ÇÏ¿© Smurf Attack °ø°ÝÀ» ¿¹¹æÇÑ´Ù. Router# config terminal Router(config)# acces-list 108 deny icmp any host 1.1.1.255 (1.1.1.0/24ÀÇ broadcast addressÀÎ 1.1.1.255 ICMP Â÷´Ü) Router(config)# access-list 108 deny icmp any host 1.1.1.0 (1.1.1.0/24ÀÇ network addressÀÎ 1.1.1.0 ICMP Â÷´Ü) |
°ü·Ã URL |
(CVE) |
°ü·Ã URL |
(SecurityFocus) |
°ü·Ã URL |
(ISS) |
|