Security CLI Commands
2/1553-ZAT 759 94 Uen B – December 2005
587
19.41
security set IDS SCANattackblock
19.41.1 Syntax
security set IDS SCANattackblock <duration>
19.41.2 Description
This command allows you to set the scan attack block duration Intrusion
Detection Setting (IDS). If scan activity by a suspicious host attempting to
identify any open ports is detected, all suspicious hosts are blocked for a set
time limit. This command allows you to specify the duration of the block time
limit.
Note:
This CLI command is
case-sensitive
. You must type the command
attributes exactly as they appear in the syntax section of this page. If
you do not use the same case-sensitive syntax, the command fails
and the CLI displays a syntax error message.
19.41.3 Options
The following table gives the range of values for each option which can be
specified with this command and a default value (if applicable).
Option Description
Default
value
duration
The length of time (in seconds) that a
suspicious hosts is blocked for, after
scan activity has been detected.
86400
(one day)
19.41.4 Example
-->
security set IDS SCANattackblock 43200