419
Default
The device does not process the attack packets if it detects an ICMP flood attack.
Views
Attack protection policy view
Default command level
2: System level
Examples
# Configure attack protection policy 1 to drop ICMP flood attack packets.
<Sysname> system-view
[Sysname] attack-defense policy 1
[Sysname-attack-defense-policy-1] defense icmp-flood action drop-packet
Related commands
•
defense icmp-flood enable
•
defense icmp-flood ip
•
defense icmp-flood rate-threshold
•
display attack-defense policy
defense icmp-flood enable
Use
defense icmp-flood enable
to enable ICMP flood attack protection.
Use
undo defense icmp-flood enable
to restore the default.
Syntax
defense icmp-flood enable
undo defense icmp-flood enable
Default
ICMP flood attack protection is disabled.
Views
Attack protection policy view
Default command level
2: System level
Examples
# Enable ICMP flood attack protection in attack protection policy 1.
<Sysname> system-view
[Sysname] attack-defense policy 1
[Sysname-attack-defense-policy-1] defense icmp-flood enable
Related commands
•
defense icmp-flood action drop-packet
•
defense icmp-flood ip
•
defense icmp-flood rate-threshold
•
display attack-defense policy