839
syn-ack-flood
: Specifies SYN-ACK flood attack.
syn-flood
: Specifies SYN flood attack.
udp-flood
: Specifies UDP flood attack.
ipv6-address
: Specifies a protected IPv6 address. If you do not specify an IPv6 address, this
command displays information about all protected IPv6 addresses.
vpn-instance vpn-instance-name
: Specifies the MPLS L3VPN instance to which the IPv6 address
belongs. The
vpn-instance-name
argument is a case-sensitive string of 1 to 31 characters. Do not
specify this option if the IPv6 address is on the public network.
slot slot-number
: Specifies a card by its slot number. If you do not specify a card, this command
displays information about IPv6 addresses protected by flood attack detection and prevention for all
cards. (Distributed devices in standalone mode.)
slot slot-number
: Specifies an IRF member device by its member ID. If you do not specify a member
device, this command displays information for all IRF member devices. (Centralized devices in IRF
mode.)
chassis
chassis-number
slot
slot-number
: Specifies a card on an IRF member device. The
chassis-number
argument represents the member ID of the IRF member device. The
slot-number
argument represents the slot number of the card. If you do not specify a card, this command displays
information about IPv6 addresses protected by flood attack detection and prevention for all cards.
(Distributed devices in IRF mode.)
count
: Displays the number of matching IPv6 addresses protected by flood attack detection and
prevention.
Examples
# (Centralized devices in standalone mode.) Display information about all IPv6 addresses protected
by flood attack detection and prevention in the attack defense policy
abc
.
<Sysname> display attack-defense policy abc flood ipv6
IPv6 address VPN instance Type Rate threshold(PPS) Dropped
2013::127f a012345678901234 SYN-ACK-FLOOD 100 4294967295
2::5 -- ACK-FLOOD 100 10
1::5 -- ACK-FLOOD 100 23
# (Distributed devices in standalone mode/centralized devices in IRF mode.) Display information
about all IPv6 addresses protected by flood attack detection and prevention in the attack defense
policy
abc
.
<Sysname> display attack-defense policy abc flood ipv6
Slot 1:
IPv6 address VPN instance Type Rate threshold(PPS) Dropped
2013::127f a012345678901234 SYN-ACK-FLOOD 100 4294967295
2::5 -- ACK-FLOOD 100 10
1::5 -- ACK-FLOOD 100 23
Slot 2:
IPv6 address VPN instance Type Rate threshold(PPS) Dropped
2013::127f a012345678901234 SYN-ACK-FLOOD 100 5465
2::5 -- ACK-FLOOD 100 0
1::5 -- ACK-FLOOD 100 122
# (Distributed devices in IRF mode.) Display information about all IPv6 addresses protected by flood
attack detection and prevention in the attack defense policy
abc
.
<Sysname> display attack-defense policy abc flood ipv6
Slot 1 in chassis 1:
IPv6 address VPN instance Type Rate threshold(PPS) Dropped