для Cisco Cisco Firepower 4120 Security Appliance
Table 16: Daylight Saving Parameters
Parameter
Description
Enabled
Enables or disables daylight saving time.
Default: Disabled
Default: Disabled
Begins at
The start date and time for daylight saving time.
Ends at
The end date and time for daylight saving time.
Current Mode
Specifies whether the device is on standard time or daylight saving time.
Configuring the DefensePro Networking Setup
This section contains the following topics:
•
•
•
Configuring the Basic Parameters of the DefensePro
Networking Setup
Use the Networking Basic pane to configure the IP Fragmentation parameters.
On physical platforms, you can use the Networking Basic pane also to specify whether jumbo frames bypass the
On physical platforms, you can use the Networking Basic pane also to specify whether jumbo frames bypass the
device or are discarded.
IPv4 and IPv6 Support
DefensePro supports IPv6 and IPv4 protocols and provides a fully functional IPS and DoS prevention solution for
IPv6/IPv4 packets. Management works only in IPv4.
DefensePro supports processing of IPv6 packets and ICMPv6 packets, including the following:
DefensePro supports processing of IPv6 packets and ICMPv6 packets, including the following:
•
Setting networks with IPv6 addresses
•
Applying security policies
•
Blocking attacks
•
Security reporting
IP Fragmentation
When the length of the IP packet is too long to be transmitted, the originator of the packet, or one of the routers
transmitting the packet, must fragment the packet to multiple shorter packets.
Using IP fragmentation, Radware DefensePro DDoS Mitigation can classify the Layer 4 information of IP
Using IP fragmentation, Radware DefensePro DDoS Mitigation can classify the Layer 4 information of IP
fragments. The device identifies all the fragments belong to same datagram, then classifies and forwards them
accordingly. The device does not reassemble the original IP packet, but forwards the fragmented datagrams to
their destination, even if the datagrams arrive at the device out of order.
Traffic Exclusion
Traffic Exclusion
is when DefensePro passes through all traffic that matches no network policy configured on the
device.
In Radware DefensePro DDoS Mitigation, the Traffic Exclusion behavior is always enabled. That is, the device
In Radware DefensePro DDoS Mitigation, the Traffic Exclusion behavior is always enabled. That is, the device
always passes through all traffic that matches no network policy configured on the device.
© 2016 Cisco | Radware. All rights reserved. This document is Cisco Public.
Page 69 of 281