587
teardrop
: Specifies the teardrop attack.
tiny-fragment
: Specifies the tiny fragment attack.
traceroute
: Specifies the traceroute attack.
udp-bomb
: Specifies the UDP bomb attack.
winnuke
: Specifies the WinNuke attack.
action
: Specifies the actions against the single-packet attack. If you do not specify this keyword, the
default action of the attack level to which the single-packet attack belongs is used.
drop
: Drops packets that match the specified signature.
logging
: Enables logging for the specified single-packet attack.
none
: Takes no action.
Usage guidelines
You can use this command multiple times to enable signature detection for multiple single-packet
attack types.
When you specify a packet type by a number, if the packet type has a corresponding keyword, the
keyword is displayed in command output. If the packet type does not have a corresponding keyword,
the number is displayed.
Examples
# Enable signature detection for the IP fragment attack and specify the prevention action as
drop
in
attack defense policy
atk-policy-1
.
<Sysname> system-view
[Sysname] attack-defense policy atk-policy-1
[Sysname-attack-defense-policy-atk-policy-1] signature detect fragment action drop
Related commands
signature level action
signature level action
Use
signature level action
to specify the actions against single-packet attacks on a specific level.
Use
undo signature level action
to restore the default.
Syntax
signature level
{
high
|
info
|
low
|
medium
}
action
{ {
drop
|
logging
} *
|
none
}
undo signature level
{
high
|
info
|
low
|
medium
}
action
Default
For informational-level and low-level single-packet attacks, the action is
logging
.
For medium-level and high-level single-packet attacks, the actions are
logging
and
drop
.
Views
Attack defense policy view
Predefined user roles
network-admin
mdc-admin
Содержание FlexNetwork 7500 Series
Страница 350: ...335 Related commands display port security port security enable ...
Страница 379: ...364 Sysname system view Sysname keychain abc mode absolute Sysname keychain abc tcp kind 252 ...
Страница 519: ...504 Related commands display ssh2 algorithm ssh2 algorithm cipher ssh2 algorithm key exchange ssh2 algorithm mac ...