Brocade Mobility RFS7000-GR Controller System Reference Guide (Supporting software release 4.1.0.0-040GR and later) User Manual

Page 364

Advertising
background image

350

Brocade Mobility RFS7000-GR Controller System Reference Guide

53-1001944-01

Configuring firewalls and access control lists

6

4. Click the Add button.

5. To create a new WLAN Firewall rule configure the following information:

WLAN Index

Select a WLAN index number from the pulldown menu. This number is configured
on the wireless LAN configuration page.

Broadcast Storm
Threshold

Enter the Broadcast Storm Threshold for each interface. When the rate of
broadcast packets exceeds the high threshold configured for an interface, packets
are throttled till the rate falls below the configured rate. Thresholds are configured
in terms of packets per second. The valid threshold range is 0-1000000 packets
per second.

Multicast Storm
Threshold

Enter the Multicast Storm Threshold for each interface. When the rate of multicast
packets exceeds the high threshold configured for an interface, packets are
throttled till the rate falls below the configured rate. Thresholds are configured in
terms of packets per second. The valid threshold range is 0-1000000 packets per
second.

Unknown Unicast Storm

Enter the Unknown Unicast Storm Threshold for each interface. When the rate of
unknown unicast packets exceeds the high threshold configured for an interface,
packets are throttled till the rate falls below the configured rate. Thresholds are
configured in terms of packets per second. The threshold range is 0-1000000
packets per second.

Allowed MU denies per
sec

Configure the permissible number of denied packets per second that a mobile unit
on this WLAN may send before it is deauthenticated. The threshold range is
0-1000000 packets per second.

MU Deauthenticate

Configure whether or not mobile unit deauthentication is enabled for each WLAN.
If

MU Deauthenticate

is enabled any associated mobile unit which hit the

thresholds configured for storm traffic will be deauthenticated. To enable
deauthentication, check the box.

DHCP Trust

Select to enable DHCP trust on this WLAN. When disabled, any DHCP packets
received on the interface is dropped.

Advertising