600
TCP attack prevention commands
tcp anti-naptha enable
Use
tcp anti-naptha enable
to enable Naptha attack prevention.
Use
undo tcp anti-naptha enable
to disable Naptha attack prevention.
Syntax
tcp anti-naptha enable
undo tcp anti-naptha enable
Default
Naptha attack prevention is disabled.
Views
System view
Predefined user roles
network-admin
mdc-admin
Usage guidelines
After you enable Naptha attack prevention, the device periodically checks the number of TCP
connections in each state. If the number of TCP connections in a state exceeds the limit, the device
will accelerate the aging of the TCP connections in that state. The check interval is set by the
tcp
check-state interval
command. The TCP connection limits are set by the
tcp state
command.
Examples
# Enable Naptha attack prevention.
<Sysname> system-view
[Sysname] tcp anti-naptha enable
Related commands
tcp state
tcp check-state interval
tcp check-state interval
Use
tcp check-state interval
to set the interval for checking the number of TCP connections in each
state.
Use
undo tcp check-state interval
to restore the default.
Syntax
tcp check-state interval interval
undo tcp check-state interval
Default
The interval for checking the number of TCP connections in each state is 30 seconds.
Содержание FlexNetwork 7500 Series
Страница 350: ...335 Related commands display port security port security enable ...
Страница 379: ...364 Sysname system view Sysname keychain abc mode absolute Sysname keychain abc tcp kind 252 ...
Страница 519: ...504 Related commands display ssh2 algorithm ssh2 algorithm cipher ssh2 algorithm key exchange ssh2 algorithm mac ...