MAC地址与交换机端口绑定是交换机端口安全管理功能之一。
MAC Address binding with the switch port is one function of switch port security management.
如果你是管理着一个大型网络,好好去研究一下你的网络交换机的“端口安全”功能。
If you manage a large network, research your network switch's "Port Security" features.
实施基本的交换机安全策略(包括:端口安全、聚合访问、除VLAN1之外的其他VLAN的管理等等)。
Implement basic switch security (including: port security, trunk access, management vlan other than vlan1, etc.)
有一个“端口安全”功能是允许你强制使你的交换机在每个端口只允许(IP地址对应的)一个MAC地址通过。
One "port Security" feature lets you force your switch to allow only one MAC address for each physical port on the switch.
很多应用程序本身没有问题,但是存在潜在的安全漏洞,比如这种应用程序所使用的某个端口或协议存在漏洞。
There are lots of applications that aren't troublesome in themselves, but have potential security holes, like when a port or protocol used normally by that app has vulnerabilities.
管理员将获益于减少用户打开端口的请求,从而能够对其安全环境进行更严格的控制。
Administrators will benefit from reduced user requests to open ports and tighter control of their secure environments as a result.
注意,当这个守护进程停止运行时,系统是安全的;所有端口关闭,不可访问。
Note that in the case of a crash, your system will be safe; all ports will be closed and unaccessible.
因此,为了让计算机更安全,应该采取的第一个措施是把端口改为另一个不常用的非标准端口号,比如22960。
So, the first step you should take to make your machine more secure is simply to change the port to another unused and nonstandard port number-say, 22960.
注意:如果您配置了远程CEI服务器,则必须修改CEI选项,以显示远程主机名、R mi端口和安全设置。
Note: if you have configured a remote CEI server, you must modify the CEI options to specify the remote host name, RMI port and security Settings.
映射之后,本地端口指定的所有通信量通过一个安全的SSH隧道转发到远程计算机上的映射端口上。
Once mapped, all the traffic destined for the local port is forwarded to the remote machine on the mapped port within a secured tunnel of SSH.
完成了此步骤后,就可以为公开相同服务的不同端口配置不同的安全要求。
This step is being done so that we will have the ability to configure different security requirements for different ports that expose the same service.
例如,如果您想使用一个运行的实例作为一个Web服务器,那么您应该在您的安全组中定义一个规则:任何机器对端口80的连接请求都应该被接受。
For example, if you wanted to use a running instance as a Web server, you would define a rule in your security group that connection requests on port 80 should be accepted from any machine.
如果未启用OR b安全性,OR b侦听器端口是OR b侦听传入IIOP请求的实际端口。
The ORB listener port is the actual port that the ORB listens on for incoming IIOP requests if ORB security is not enabled.
更新队列管理器、端口和通道以与WebSphereMQ中定义的安全服务器连接匹配。
Update the Queue manager, Port, and Channel to match the secured server connection defined in WebSphere MQ.
虽然有时候这可能非常有益,像Web服务器默认为标准的Web服务器通信端口,这也会导致许多安全问题。
While sometimes this can be very beneficial, like having Web servers default to the standard Web server communications port, this can also lead to a number of security issues.
如果Alphablox安装在一个远程服务器上,则应提供服务器主机名和rmi端口;如果远程服务器启用了安全机制,还要提供用户ID和密码。
If Alphablox is installed on a remote server, supply the server hostname, RMI port, and, if security is enabled on the remote server, the User ID and password.
输入Vista服务器的安全Web服务端口(比如 444)和合适的别名(比如 myvistahost_444)。
Enter the secure Web service port for the Vista server (such as 444) and a suitable alias name (such as myvistahost_444). Click Retrieve signer information
由于客户端运行在已启用全局安全的ApplicationServerv 6上,所以Application Server将使用缺省存储文件侦听ssl端口。
Since the client is running on Application Server V6, which has global security enabled, Application Server is listening at an SSL port using the default store files.
这几个标志打开一个管理端口并配置安全设置(或本例中的lack there of)。
These additional flags open up a management port and configure security Settings (or the lack thereof, in this case).
当任何MD B都不再引用消息侦听器端口时,可以通过管理控制台或wsadmin将其安全删除。
When the message listener port is no longer referenced by any MDBs, it can safely be deleted, either via the administrative console or by wsadmin.
使用以下命令设置代理以指定主机名、不安全端口和安全端口的值。
Set up the proxies using the following command to specify the values of the host name, the insecure port and secured port.
配置Web服务客户端,以便将Web服务请求发送到端口9081,而不是端口9080或9443(因为您已启用了安全功能)。
Configure the Web service client to send Web service requests to port 9081, instead of port 9080 or 9443 (because you have security enabled).
增强计算机安全性的最后一种方案是最激进的:关闭打开的端口,这会让任何攻击都无法攻破您的计算机。
The last scheme for adding security to your machine is the boldest one. You will close the open port making your machine virtually impregnable to any attack.
漏洞扫描器类似于其他类型的扫描器——例如,端口扫描器有助于保障端口上的网络和系统的安全。
A vulnerability scanner is similar to other types of scanners-for example, port scanners help secure the network and the systems on it.
打开秘密端口之后,应用常用的安全机制(比如密码或证书)。
When the secret ports are open, the usual security mechanisms (such as passwords or certificates) will apply.
事实上,大多数情况下一些破坏性网络应用和一些安全性方法会故意使用非标准端口。
In fact, in many cases, subversive network applications and some security methods will deliberately use non-standard ports.
自然地,当涉及一个端口时,就得考虑安全性,因为您不能允许“所有人”连接服务器并进行查询。
Naturally, once a port is involved, security becomes an issue because you can't allow "just anybody" to connect up to the server and start issuing queries.
引导端口始终是得到良好广告的活动端口,并且始终返回间接IOR,其中包含安全和不安全的侦听器端口。
The bootstrap port is always an active, well-advertised port, and always returns an indirect IOR containing the secured and unsecured listener ports.
服务器端口:对于非安全性的链接使用1389,对于安全性的链接使用1636。
Server Port: Use 1389 for a non-secure connection and 1636 for a secure connection.
服务器端口:对于非安全性的链接使用1389,对于安全性的链接使用1636。
Server Port: Use 1389 for a non-secure connection and 1636 for a secure connection.
应用推荐