R3303-HP HSR6800 Routers Security Configuration Guide

362
To enable checksum verification for protocol packets:
Ste
p
Command
Remarks
1. Enter system view.
system-view N/A
2. Enable checksum verification.
session checksum { all | { icmp |
tcp | udp } * }
Disabled by default.
Specifying the persistent session rule
You can set sessions with specific characteristics as persistent sessions. The aging time of a persistent
session does not change with session state transitions, and the session will not be removed even when no
packets match it.
You can configure a persistent session by configuring an aging time that is longer than those of common
sessions, or by configuring the session as a permanent connection. A permanent connection can be
cleared only when the session initiator or responder sends a request to close it or you clear it manually.
You can set the persistent session criteria by specifying a basic or advanced ACL. All sessions permitted
by the ACL are persistent sessions.
For more information about the configuration of basic and advance ACLs, see ACL and QoS
Configuration Guide.
To specify the persistent session rule:
Ste
p
Command
Remarks
1. Enter system view.
system-view N/A
2. Specify the persistent session
rule.
session persist acl acl-number
[ aging-time [ seconds ]
time-value ]
Not specified by default.
A persistent session rule can
reference only one ACL.
Only basic and advanced IPv4
ACLs are supported.
Clearing sessions manually