Command Reference Guide

3Com Router 3000 Ethernet Family
Command Reference Guide Chapter 4 MSDP Configuration Commands
3Com Corporation
4-14
This configuration is recommended for all MSDP peers in the networks possibly
attacked by DoS.
Related command: display msdp, sa-count, display msdp peer-status, display
msdp brief.
Example
# Limit the number of caches originated to 100 when the router receives SA messages
from the MSDP peer 125.10.7.6.
<3Com> system-view
[3Com] msdp
[3Com-msdp] peer 125.10.7.6 sa-cache-maximum 100
4.1.17 peer sa-policy
Syntax
peer peer-address sa-policy { import | export } [ acl acl-number ]
undo peer peer-address sa-policy { import | export }
View
MSDP view
Parameter
import: Receives SA messages from the specified MSDP peer.
export: Forwards SA messages from the specified MSDP peer.
peer-address: Address of the MSDP peer whose SA messages need to be filtered.
acl acl-number: Number of advanced IP ACL, ranging from 3000 to 3999. If no ACL is
specified, all (S, G) entries are filtered.
Description
Use the peer sa-policy command to configure a filter list for SA messages received or
forwarded from the specified MSDP peer.
Use the undo peer sa-policy command to remove the configuration.
By default, messages received or forwarded will not be filtered. All SA messages are
received or forwarded from an MSDP peer.
Related command: peer.
Example
# Forward only those SA messages that passed the advanced IP ACL.
<3Com> system-view
[3Com] acl number 3100