288
SIGNAMAX LLC • www.signamax.eu
ban-timeout
When detecting the scan attack, how long the source IP is forbidden to
access; 15 second by default.
【
Default status
】
By default, the scan detection function is disabled.
Note:
If entirely adopting the default parameters, users can use the command
scanprotect
default
to simplify the configuration. In the default configuration, the time interval of scan
detection is 1 second, the threshold value of address scan is 10, the threshold value of
port scan is 10 and ban time is 15 second.
clear scanprotect
This command is to clear the information about scan detection.
clear scanprotect
Syntax
Description
clear scanprotect
To clear the information about the scan statistic.
Monitoring & Debugging
Monitoring Commands
Command
Description
show scanprotect
To display the scan detection parameter
information
Monitoring Example
The displayed result after executing the command
show scanprotect
:
loopback0:
Interval=1000ms addr-limit=10 port-limit=10 ban-timeout=15s
Ban ip list:
Total drop scan pkt: 0
Summary of Contents for 065-7434
Page 1: ...24 Port 10 100 L3 Switch Model 065 7434 Configuration Guide Revision A1 ...
Page 245: ...245 SIGNAMAX LLC www signamax eu Application Example Example of configuring DHCP Snooping ...
Page 302: ...302 SIGNAMAX LLC www signamax eu Default status no switching interface ...
Page 368: ......
Page 655: ...287 SIGNAMAX LLC www signamax eu Sub VLAN members in the system ...