English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 29159
À§Çèµµ 30
Æ÷Æ® 22
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù CISCO
»ó¼¼¼³¸í ÇØ´ç CISCO IOS´Â Directed Broadcasts°¡ Á¦ÇѵǾî ÀÖÁö ¾Ê´Ù. Directed Broadcast´Â Dos(Denial Of Service)ÀÇ ÀÏÁ¾ÀÎ Smurf °ø°Ý¿¡ ÁÖ·Î ¾²ÀÌ´Â ¹æ½ÄÀ¸·Î ¸ñÇ¥ÁöÁ¡¿¡ µµ´ÞÇϱâ Àü±îÁö Unicast ¹æ½ÄÀ¸·Î Àü¼ÛµÇ´Ù°¡ ÃÖÁ¾ ¶ó¿ìÅ͸¦ Åë°úÇÒ ¶§ ºñ·Î¼Ò Directed Broadcast¸¦ ¾Ë¾Æº¼ ¼ö ÀÖÀ¸¹Ç·Î ÀåÄ¡º°·Î ÀÌ·¯ÇÑ ÆÐŶÀ» Á¦ÇÑÇÒ ¼ö ÀÖµµ·Ï ¼³Á¤ÇÏ¿©¾ß ÇÑ´Ù.

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
CISCO IOS
ÇØ°áÃ¥ ´ÙÀ½°ú °°ÀÌ Directed-broadcast¸¦ Â÷´ÜÇÑ´Ù.
Router# config terminal
Router(config)# interface fastethernet 0/1
Router(config-if)# no ip directed-broadcast.

¶Ç´Â ´ÙÀ½°ú °°ÀÌ access-list¸¦ ¼³Á¤ÇÏ¿© Smurf Attack °ø°ÝÀ» ¿¹¹æÇÑ´Ù.
Router# config terminal
Router(config)# acces-list 108 deny icmp any host 1.1.1.255
(1.1.1.0/24ÀÇ broadcast addressÀÎ 1.1.1.255 ICMP Â÷´Ü)
Router(config)# access-list 108 deny icmp any host 1.1.1.0
(1.1.1.0/24ÀÇ network addressÀÎ 1.1.1.0 ICMP Â÷´Ü)
°ü·Ã URL (CVE)
°ü·Ã URL (SecurityFocus)
°ü·Ã URL (ISS)