Sets the yundun firewall ARP protection function to defend against P2P Terminator

Source: Internet
Author: User

Many users may have misunderstandings when using the WAF's ARP protection function. In the afternoon, they are free to test the ARP protection function in the company's local network. The diagram is as follows, hoping to help some users!

Let's talk about ARP protection principles:

1. Point-to-Point attacks: the other Party sends an ARP attack packet to you. Such a firewall will intercept the packets.

2. it's still a point-to-point attack. It's just a change to the attack's target image. It's a gateway attack that notifies the gateway of "What is your MAC". Of course, it tells the gateway that the MAC is wrong, therefore, the communication between you and the gateway is disconnected. The firewall cannot receive this attack by default, so it cannot be intercepted. However, the arpfirewall feature adds the "enable active defense" function to combat this function. The other party tells the gateway the wrong address, and the IOT platform tells the gateway the correct address.

Plain text:

Install the Skiller software on the company's LAN server. Open the Skiller software interface as follows (click "scan network" to obtain the list of LAN online hosts)

Select 192.168.1.7 (my own computer) to attack my computer, for example:

Okay. After the attack started, my computer's firewall did not select the "enable active defense" function. The result is as follows: Ping the gateway first. If yes, open a website and try again, baidu.com cannot be opened. Dizzy. The attack is successful. For example:

Okay, let's try the active defense function. The result is as follows: after the "active defense" function is enabled, the website can be opened, the speed is a little slower than when there is no attack at ordinary times, but the website can be browsed normally, such:

An ARP attack is done in this way.

Related Article

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.