亚洲欧美第一页_禁久久精品乱码_粉嫩av一区二区三区免费野_久草精品视频

? 歡迎來到蟲蟲下載站! | ?? 資源下載 ?? 資源專輯 ?? 關于我們
? 蟲蟲下載站

?? readme.aruba

?? This is the snapshot of Snot Latest Rules
?? ARUBA
字號:
Aruba Networks Integration==========================Joshua Wright <jwright@arubanetworks.com>05-SEP-2006-- Overview --As a centralized-processing wireless transport system, an Aruba NetworksMobility Controller (MC) has visibility into all wireless traffic includingdynamic encryption keys.  This architecture allows users to easily integratewith Snort for centralized monitoring of all wireless network traffic.In addition to traffic reporting capabilities, an Aruba Networks MC can enforcedynamic role-based access controls to restrict or limit accessibility into thenetwork.  When integrated with Snort's powerful rules language functionality,users can dynamically modify access permissions to the wireless network basedon any matching rules.  This allows an administrator to blacklist a user iftheir workstation appears to be infected with a worm, or limit access tonetwork resources if spyware is detected, or any of several configurationpossibilities.The ability to modify a user's role (and by association, access permissions) orto blacklist a user is provided in the alert_aruba_action output plugin.  Thisdocument describes the features, implementation and configuration of thisoutput plugin.-- Features --The alert_aruba_action output plugin allows a Snort administrator to createcustom rule types that modify the access permissions for wireless users whentriggered.  By configuring an Aruba MC to mirror all wireless traffic to adesignated Snort box, Snort can assess all wireless traffic and interact withthe Aruba MC to quarantine problematic sources within the network.Using the alert_aruba_action output plugin, an administrator can specify theaction to take when a specified alert is triggered:  blacklist: When a Snort alert is triggered, the source IP address  becomes blacklisted on the Aruba MC, stopping all wireless access for the  station.  setrole: When a Snort alert is triggered, the source IP address has their  role changed from the currently derived role to one of the administrator's  choosing.  This is often deployed as a "quarantine role", where restricted  access is granted to the network for the station.-- Implementation --In order to use this plugin effectively, the Aruba MC must be able to mirror acopy of wireless traffic to a Snort sensor as a directly connected (SPAN port)station, or the termination endpoint of a GRE tunnel (see Configuration fordetails).  Also, the Snort sensor must be able to reach the Aruba MC on TCP/80to blacklist or modify the role assignments for users.-- Configuration --Configuration requires modification to the snort.conf file for thealert_aruba_action plugin, as well as configuration statements on the Aruba MCto authenticate Snort when changing client access permissions.  The Snortsensor and the Aruba MC share a secret passphrase for authentication, and theAruba MC must specify the source IP address of the Snort sensor.--- alert_aruba_action ---The configuration options are described below:* <controller address> *Specifies the IP address or hostname of the Aruba MC that will be responsiblefor modifying user role assignments, or blacklisting users.  Mandatory.* secrettype *Specifies the type of secret used for the Snort sensor to authenticate to theAruba MC, one of:  sha1      - The shared secret, represented as a SHA1 hash.  You can generate              this string with the openssl tool as 	      "echo password | openssl dgst -sha1", changing the string 	      "password" to the shared secret string.  md5       - The shared secret, represented as a MD5 hash.  You can generate              this string with the openssl tool as 	      "echo password | openssl dgst -md5", changing the string 	      "password" to the shared secret string.  cleartext - The shared secret in plaintext.* secret *Specified the secret shared between the Snort sensor and the Aruba MC.  Mustbe represented to match the secret type setting (SHA1, MD5 or cleartext).* action *Specifies the action that the Aruba MC will take against the source MACaddress of the station reported by the Snort sensor, one of:  blacklist          - Terminate all network access for the wireless user,                        placing them on the blacklist.  Station will be unable		       to access the wireless network until the blacklist		       duration expires.  setrole:<rolename> - Modify the user's role assignment to the specified role                       name.  The new role can be configured to restrict or		       grant access to the network as needed by the		       administrator.Example:In this example snort.conf file, we create a new rule type that has two outputmechanisms; a local syslog entry and an Aruba action command:ruletype aruba_quarantine {    type alert    output alert_aruba_action: 172.16.0.252 cleartext foo setrole:snort_quarantine    output alert_syslog: LOG_AUTH LOG_ALERT}Once the new rule type is created, the Snort administrator can specify theSnort rules that will take this action.  For example, if the organization wantsto prohibit the use of the ICQ chat protocol, we can use the followingsnort.conf entry to complete the output actions in the aruba_quarantine rulespecified above:aruba_quarantine tcp $HOME_NET any -> $EXTERNAL_NET any (msg:"CHAT ICQ access"; flow:to_server,established; content:"User-Agent|3A|ICQ"; classtype:policy-violation; sid:541; rev:9;)--- Aruba MC ---In order to accept role change commands and blacklist events from the Snortsensor, the Aruba MC must be configured to recognize the Snort sensor by IPaddress and through the shared secret.  The Aruba MC must also be configuredwith the appropriate roles if the alert_aruba_action plugin is configured withthe "settype" action; the blacklist action is always available and does notrequire additional configuration.The following example configures the Aruba MC to accept role changes orblacklist events from the Snort sensor at 10.10.10.10 using the shared secret"pedantic":(Aruba200) >enPassword:********(Aruba200) #configure terminalEnter Configuration commands, one per line. End with CNTL/Z(Aruba200) (config) #aaa xml-api client 10.10.10.10(Aruba200) (ecp-client) #key pedantic(Aruba200) (ecp-client) #end(Aruba200) #copy running-config startup-configYou can verify the configuration using the "show aaa xml-api" commands:(Aruba200) #show aaa xml-api clientsXML-API Client Configuration----------------------------     IP       Key     -----------   ---     10.10.10.10   *****     172.16.0.106  *****(Aruba200) #show aaa xml-api statisticsXML-API Statistics------------------Statistics                             10.10.10.10----------                             -----------user_authenticate                      0 (0)user_add                               0 (0)user_delete                            0 (0)user_blacklist                         0 (0)user_query                             0 (0)unknown user                           0 (0)unknown role                           0 (0)unknown external agent                 0 (0)authentication failed                  0 (0)invalid command                        0 (0)invalid message authentication method  0 (0)invalid message digest                 0 (0)missing message authentication         0 (0)missing or invalid version number      0 (0)Cant use VLAN IP                       0 (0)Invalid IP                             0 (0)Packets received from unknown clients : 0 (0)Packets received with unknown request : 0 (0)Requests Received/Success/Failed      : 0/0/0 (0/0/0)Also ensure that any roles specified with the "setrole:rolename" action existon the Aruba MC:(Aruba200) #show configuration | include snort_quarantineuser-role snort_quarantineFor additional information on configuring the Aruba MC, please see the ArubaOSReference Guide or contact Aruba Customer Support.

?? 快捷鍵說明

復制代碼 Ctrl + C
搜索代碼 Ctrl + F
全屏模式 F11
切換主題 Ctrl + Shift + D
顯示快捷鍵 ?
增大字號 Ctrl + =
減小字號 Ctrl + -
亚洲欧美第一页_禁久久精品乱码_粉嫩av一区二区三区免费野_久草精品视频
久久综合99re88久久爱| 欧美精品视频www在线观看| 日韩精品电影在线观看| 五月激情丁香一区二区三区| 亚洲精品日产精品乱码不卡| 成人免费一区二区三区视频 | 国产在线不卡一区| 久久99热99| 国产精品99久久久久久似苏梦涵| 美脚の诱脚舐め脚责91| 韩国女主播成人在线| 国产成人在线看| zzijzzij亚洲日本少妇熟睡| 99久久er热在这里只有精品15| a级精品国产片在线观看| 色综合久久中文综合久久97| 欧美日韩国产一区| 精品剧情v国产在线观看在线| 久久久久97国产精华液好用吗| 欧美激情综合在线| 亚洲激情综合网| 免费国产亚洲视频| 国产高清不卡一区| 欧美亚洲一区二区三区四区| 欧美一区二区网站| 中日韩免费视频中文字幕| 亚洲精品自拍动漫在线| 奇米精品一区二区三区四区| 国产激情一区二区三区四区| 色欧美日韩亚洲| 欧美一级日韩一级| 中文字幕中文字幕一区| 蜜桃在线一区二区三区| 成人精品gif动图一区| 欧美精品久久久久久久多人混战| 久久一日本道色综合| 亚洲欧美成aⅴ人在线观看| 秋霞电影网一区二区| 91亚洲精品乱码久久久久久蜜桃| 91精品国产全国免费观看| 国产日韩精品一区二区三区在线| 亚洲午夜久久久久久久久电影网| 国产一区二区三区蝌蚪| 欧美日韩成人综合天天影院 | 国产欧美精品一区二区色综合朱莉| 国产精品毛片久久久久久| 免费国产亚洲视频| 在线看国产日韩| 国产精品丝袜久久久久久app| 天天亚洲美女在线视频| 91蜜桃免费观看视频| 国产亚洲一二三区| 男女视频一区二区| 欧美日韩国产首页在线观看| 国产精品第13页| 丁香天五香天堂综合| 日韩精品中午字幕| 天天综合色天天综合| 欧美亚洲国产bt| 自拍偷拍欧美精品| 国产成人超碰人人澡人人澡| 日韩你懂的电影在线观看| 一二三四社区欧美黄| 99在线精品视频| 国产精品视频第一区| 国产麻豆午夜三级精品| 精品成人一区二区| 精品一区二区三区日韩| 精品处破学生在线二十三| 日韩av高清在线观看| 911国产精品| 日本欧美一区二区在线观看| 欧美日韩精品一区二区三区蜜桃| 亚洲综合视频在线观看| 色婷婷久久久亚洲一区二区三区| 亚洲欧洲国产日本综合| 99久久国产综合精品麻豆| 国产精品乱码人人做人人爱| 成人av免费在线播放| 国产精品福利电影一区二区三区四区| 成人免费视频caoporn| 中文字幕在线不卡视频| 色综合咪咪久久| 艳妇臀荡乳欲伦亚洲一区| 欧美日韩精品欧美日韩精品| 午夜激情一区二区三区| 日韩视频在线一区二区| 国产一区二区三区最好精华液| 国产亚洲福利社区一区| 不卡av在线网| 亚洲第一二三四区| 精品国产三级电影在线观看| 国产精品一卡二卡| 亚洲欧美电影一区二区| 欧美电影一区二区| 国产传媒欧美日韩成人| 亚洲欧美日韩在线| 欧美老肥妇做.爰bbww视频| 久久99热99| 椎名由奈av一区二区三区| 欧美猛男超大videosgay| 国产精品系列在线播放| 一区二区理论电影在线观看| 日韩免费看网站| 91麻豆国产在线观看| 六月丁香婷婷色狠狠久久| 国产色91在线| 欧美日韩精品一区二区三区蜜桃| 国内精品写真在线观看| 亚洲欧美日韩一区| 久久综合av免费| 欧美日韩国产免费一区二区| 国产精品影音先锋| 性感美女极品91精品| 国产亚洲欧美在线| 欧美伊人久久久久久久久影院| 国产资源在线一区| 亚洲狠狠爱一区二区三区| 久久看人人爽人人| 欧美日本不卡视频| 91影视在线播放| 精品综合久久久久久8888| 亚洲一区二区三区四区不卡| 欧美国产成人在线| 欧美电影免费观看完整版| 色网综合在线观看| 国产高清久久久久| 久久99在线观看| 亚洲成人一区在线| 亚洲人成人一区二区在线观看| 26uuu欧美| 日韩一级二级三级| 欧美三级资源在线| 色狠狠综合天天综合综合| 国产精品一区二区黑丝| 韩国精品主播一区二区在线观看 | 精品久久久久久久久久久久久久久久久| 不卡电影免费在线播放一区| 极品美女销魂一区二区三区 | 日韩欧美一级二级三级| 在线视频观看一区| 99re热视频精品| 99国产精品国产精品毛片| 成人三级伦理片| 成人综合婷婷国产精品久久免费| 麻豆一区二区三区| 久久99热99| 国产精品中文有码| 丁香婷婷综合色啪| av一二三不卡影片| 91在线视频免费观看| 91浏览器在线视频| 欧洲av在线精品| 欧美日韩国产精品成人| 欧美精品久久99久久在免费线| 91精品国产综合久久婷婷香蕉| 在线播放欧美女士性生活| 91精品婷婷国产综合久久竹菊| 欧美一级搡bbbb搡bbbb| 精品久久久久香蕉网| 久久久.com| 国产精品国产精品国产专区不片| 国产精品久久久久久久久晋中 | 天天综合色天天综合| 青青草97国产精品免费观看无弹窗版| 日韩成人一区二区三区在线观看| 日本欧美加勒比视频| 久久国内精品视频| 成人亚洲一区二区一| 91免费视频大全| 欧美日韩国产乱码电影| 精品久久人人做人人爰| 中文字幕av免费专区久久| 亚洲乱码国产乱码精品精的特点 | 日韩三级在线免费观看| 久久综合av免费| 成人欧美一区二区三区| 爽好久久久欧美精品| 国产99一区视频免费| 欧美私人免费视频| 久久久影视传媒| 亚洲永久精品大片| 国产乱码精品1区2区3区| 日本韩国欧美一区| 久久无码av三级| 一区二区三区免费| 国产一区二区电影| 欧美日韩在线直播| 亚洲国产精品高清| 日韩高清一级片| 成人app下载| 日韩丝袜美女视频| 亚洲一区二区三区影院| 国内成人自拍视频| 欧美日韩一区视频| 国产精品乱子久久久久| 黄页视频在线91| 欧美撒尿777hd撒尿| 国产精品久久久一本精品| 日韩成人精品视频|