R3303-HP HSR6800 Routers Security Command Reference

394
acl acl-number: Specifies the IPv4 ACL for indicating the host range. The ACL number is in the range of
2000 to 2999.
Examples
# Map port 3456 to the FTP protocol.
<Sysname> system-view
[Sysname] port-mapping ftp port 3456
Related commands
display port-mapping
tcp syn-check
Use tcp syn-check to specify to drop any non-SYN packet that is the first packet over a TCP connection.
Use undo tcp syn-check to restore the default.
Syntax
tcp syn-check
undo tcp syn-check
Default
A non-SYN packet that is the first packet over a TCP connection is not dropped.
Views
ASPF policy view
Default command level
2: System level
Examples
# Configure ASPF policy 1 to drop any non-SYN packet which is the first packet over a TCP connection.
<Sysname> system-view
[Sysname] aspf-policy 1
[Sysname-aspf-policy-1] tcp syn-check
Related commands
aspf-policy