433
SYN Flood attack-defense for specific IP addresses:
IP High-rate(packets/s) Low-rate(packets/s)
192.168.1.1 1000 750
192.168.2.1 2000 1000
Table 73 Command output
Filed Description
Policy number
Sequence number of the attack protection policy.
Bound interfaces
Interfaces to which the attack protection policy is applied.
Smurf attack-defense
Indicates whether Smurf attack protection is enabled.
ICMP redirect attack-defense
Indicates whether ICMP redirect attack protection is enabled.
ICMP unreachable attack-defense
Indicates whether ICMP unreachable attack protection is
enabled.
Large ICMP attack-defense
Indicates whether large ICMP attack protection is enabled.
Max-length
Maximum length allowed for an ICMP packet.
TCP flag attack-defense
Indicates whether TCP flag attack protection is enabled.
Tracert attack-defense
Indicates whether tracert attack protection is enabled.
Fraggle attack-defense
Indicates whether Fraggle attack protection is enabled.
WinNuke attack-defense
Indicates whether WinNuke attack protection is enabled.
LAND attack-defense
Indicates whether Land attack protection is enabled.
Source route attack-defense
Indicates whether Source Route attack protection is enabled.
Route record attack-defense
Indicates whether Route Record attack protection is enabled.
Scan attack-defense
Indicates whether scanning attack protection is enabled.
Add to blacklist
Indicates whether the blacklist function is enabled for
scanning attack protection.
Blacklist timeout
Aging time of the blacklist entries.
Max-rate
Threshold for the connection establishment rate.
Signature-detect action
Action to be taken when a single-packet attack is detected. It
can be
Drop-packet
(dropping subsequent packets) or
Syslog
(outputting an alarm log).
ICMP flood attack-defense
Indicates whether ICMP flood attack protection is enabled.
ICMP flood action
Action to be taken when an ICMP flood attack is detected. It
can be
Drop-packet
(dropping subsequent packets) or
Syslog
(outputting an alarm log).
ICMP flood high-rate
Global action threshold for ICMP flood attack protection.
ICMP flood low-rate
Global silence threshold for ICMP flood attack protection.
ICMP flood attack-defense for specific IP
addresses
ICMP flood attack protection settings for specific IP
addresses.
UDP flood attack-defense
Indicates whether UDP flood attack is enabled.
UDP flood action
Action to be taken when a UDP flood attack is detected. It can
be
Drop-packet
(dropping subsequent packets) or
Syslog
(outputting an alarm log).
UDP flood high-rate
Global action threshold for UDP flood attack protection.