
840
2013::127f a012345678901234 SYN-ACK-FLOOD 100 4294967295
2::5 -- ACK-FLOOD 100 10
1::5 -- ACK-FLOOD 100 23
Slot 2 in chassis 2:
IPv6 address VPN instance Type Rate threshold(PPS) Dropped
2013::127f a012345678901234 SYN-ACK-FLOOD 100 5465
2::5 -- ACK-FLOOD 100 0
1::5 -- ACK-FLOOD 100 122
# (Centralized devices in standalone mode.) Display the number of IPv6 addresses protected by
flood attack detection and prevention in the attack defense policy
abc
.
<Sysname> display attack-defense policy abc flood ipv6 count
Totally 3 flood protected IP addresses.
# (Distributed devices in standalone mode/centralized devices in IRF mode.) Display the number of
IPv6 addresses protected by flood attack detection and prevention in the attack defense policy
abc
.
<Sysname> display attack-defense policy abc flood ipv6 count
Slot 1:
Totally 3 flood protected IP addresses.
Slot 2:
Totally 3 flood protected IP addresses.
# (Distributed devices in IRF mode.) Display the number of IPv6 addresses protected by flood attack
detection and prevention in the attack defense policy
abc
.
<Sysname> display attack-defense policy abc flood ipv6 count
Slot 1 in chassis 1:
Totally 3 flood protected IP addresses.
Slot 2 in chassis 2:
Totally 3 flood protected IP addresses.
Table 127 Command output
Field
Description
Totally 3 flood protected IP
addresses
Total number of the IPv6 addresses protected by flood attack detection
and prevention.
IPv6 address
Protected IPv6 address.
VPN instance
MPLS L3VPN instance to which the protected IPv6 address belongs. If
the protected IPv6 address is on the public network, this field displays
hyphens (--).
Type
Type of the flood attack.
Rate threshold(PPS)
Threshold for triggering the flood attack prevention, in units of packets
sent to the IPv6 address per second. If no rate threshold is set, this field
displays the default value 1000.
Dropped
Number of dropped attack packets. If the prevention action is logging, this
field displays
0
.
display attack-defense scan attacker ip
Use
display attack-defense scan attacker ip
to display information about IPv4 scanning attackers.
Syntax
Centralized devices in standalone mode:
Summary of Contents for FlexNetwork MSR Series
Page 1005: ...987 ...