Help Center/ Bare Metal Server/ User Guide (Paris Region) / Network/ VPC/ Setting the Source/Destination Check for a NIC
Updated on 2022-02-22 GMT+08:00

Setting the Source/Destination Check for a NIC

Scenarios

After source/destination check is enabled, the system checks whether source IP addresses contained in the packets sent by BMSs are correct. If the IP addresses are incorrect, the system does not allow the BMSs to send the packets. This mechanism prevents packet spoofing, thereby improving system security.

Procedure

  1. Log in to the management console.
  2. Under Computing, click Bare Metal Server.

    The BMS console is displayed.

  3. Click the name of the target BMS.

    The page showing details of the BMS is displayed.

  4. Select the NICs tab. Expand the details of the target NIC.
  5. Enable or disable Source/Destination Check.

    By default, Source/Destination Check is enabled. In this case, the system checks whether source IP addresses contained in the packets sent by BMSs are correct. If the IP addresses are incorrect, the system does not allow the BMSs to send the packets. If the BMS functions as a NAT server, router, or firewall, you must disable the source/destination check for the BMS.