DGS-6604
m
show dos_prevention
CLI Reference Guide
594
show dos_prevention
Use this command to show DoS prevention status and related drop counters.
show dos_prevention
Syntax
None
Default
None
Command Mode
User EXEC or any configuration mode
Usage Guideline
Displays information about DoS prevention.
Example
The following example shows the information of a DoS configuration example.
User has configured to enable DoS on attacking type “Land Attack”, ”Blat Attack”
and the action “Drop”, ”Log” are enabled. (Please note that
enable dos
prevention
to block blat_attack may block the Syslog packets.)
The “Action” row shows users have enabled “Drop”, “Log” actions. The original
received attacking packets of “Land Attack”, ”Blat Attack” will be dropped. Each
packet dropped by DoS module will cause “Frame Count” increasing by 1. For
every five minutes, DoS module will add one log to system log if any attacking
packet is received in this interval.
Switch# Switch# show dos_prevention
DoS Prevention Information
Action: Drop Log
Frame Counts: 12345678
DoS Type State
----------------------------------------------------
Land Attack Enabled
Blat Attack Enabled
Smurf Attack Disabled
TCP Null Disabled
TCP Xmas Disabled
TCP SYNFIN Disabled
TCP SYN SrcPort Less Than 1024 Disabled
Switch#