Security DoS Commands
show security-suite dos
Cisco 220 Series Smart Plus Switches Command Line Interface Reference Guide Release 1.0.0.x
427
31
show security-suite dos
To show the DoS protection configuration, use the show security-suite dos
Privileged EXEC Mode command.
Syntax
show security-suite dos
Parameters
N/A
Command Mode
Privileged EXEC Mode
Example
switchxxxxxx#
show security-suite dos
Type | State (Length)
----------------------------+---------------------------------
DMAC equal to SMAC | enabled
Land (DIP = SIP) | enabled
UDP Blat (DPORT = SPORT) | enabled
TCP Blat (DPORT = SPORT) | enabled
POD (Ping of Death) | enabled
IPv6 Min Fragment Size | enabled (1000 Bytes)
ICMP Fragment Packets | enabled
IPv4 Ping Max Packet Size | enabled (512 Bytes)
IPv6 Ping Max Packet Size | enabled (512 Bytes)
Smurf Attack | enabled (Netmask Length: 0)
TCP Min Header Length | enabled (20 Bytes)
TCP Syn (SPORT < 1024) | enabled
Null Scan Attack | enabled
X-Mas Scan Attack | enabled
TCP SYN-FIN Attack | enabled
TCP SYN-RST Attack | enabled
TCP Fragment (Offset = 1) | enabled