SYN Protection Commands
show security-suite syn protection
Cisco 220 Series Smart Plus Switches Command Line Interface Reference Guide Release 1.0.0.x
452
34
Parameters
•
pps
—The number of packets per second from a specific port that triggers
identification of TCP SYN attack. (Range: 20 to 60 packets per second)
Default Configuration
The default SYN protection threshold is 60 packets per second.
Command Mode
Global Configuration mode
Example
The following example sets the SYN protection threshold to 40 packets per
second:
switchxxxxxx(config)#
security-suite syn protection threshold 40
show security-suite syn protection
To show the SYN protection settings and the operational status per interface, use
the show security-suite syn protection Privileged EXEC Mode command.
Syntax
show security-suite syn protection
Parameters
N/A
Command Mode
Privileged EXEC Mode
Example
switchxxxxxx#
show security-suite syn protection
Protection Mode: Block
Threshold: 80
Recovery : 60