834
Field
Description
Scan attack defense
configuration
Configuration information about scanning attack detection and
prevention.
Defense
Whether scanning attack detection is enabled.
Level
Level of the scanning attack detection,
low
,
medium
, or
high
.
Actions
Prevention actions against the scanning attack:
•
BS
—Blocking sources.
•
D
—Dropping packets.
•
L
—Logging.
Flood attack defense
configuration
Configuration information about flood attack detection and prevention.
Flood type
Type of the flood attack:
•
ACK flood.
•
DNS flood.
•
FIN flood.
•
ICMP flood.
•
ICMPv6 flood.
•
SYN flood.
•
SYN-ACK flood.
•
UDP flood.
•
RST flood.
•
HTTP flood.
Global thres (pps)
Global threshold for triggering the flood attack prevention, in units of
packets sent to an IP address per second. The default is 1000 pps.
Global actions
Global prevention actions against the flood attack:
•
D
—Dropping packets.
•
L
—Logging.
•
CV
—Client verification.
•
-
—Not configured.
Service ports
Ports that are protected against the flood attack. This field displays port
numbers only for the DNS and HTTP flood attacks. For other flood
attacks, this field displays a hyphen (-).
Non-specific
Whether the global flood attack detection is enabled.
Flood attack defense for
protected IP addresses
Configuration of the IP address-specific flood attack detection and
prevention.
Address
Protected IP address.
VPN instance
MPLS L3VPN instance to which the protected IP address belongs. If no
MPLS L3VPN instance is specified, this field displays a hyphen (-).
Thres(pps)
Threshold for triggering the flood attack prevention, in units of packets
sent to the IP address per second. If no threshold is specified, this field
displays a hyphen (-).
Actions
Prevention actions against the flood attack:
•
BS
—Blocking sources.
•
CV
—Client verification.
•
D
—Dropping packets.
•
L
—Logging.
•
N
—No action.