R2511-HP MSR Router Series Security Command Reference(V5)

393
interface interface-type interface-number: Displays the packet filtering statistics of the specified interface
of the IPv4 firewall.
|: Filters command output by specifying a regular expression. For more information about regular
expressions, see Fundamentals Configuration Guide.
begin: Displays the first line that matches the specified regular expression and all lines that follow.
exclude: Displays all lines that do not match the specified regular expression.
include: Displays all lines that match the specified regular expression.
regular-expression: Specifies a regular expression, a case-sensitive string of 1 to 256 characters.
Usage guidelines
At most 50 fragments with the same 16-bit identifier in IP header can be recorded.
Examples
# Display statistics about fragments inspection.
<Sysname> display firewall-statistics fragments-inspect
Fragments inspection is enabled.
The high-watermark for clamping is 2000.
The low-watermark for clamping is 1500.
Current records for fragments inspection is 0.
Table 57 Command output
Field Descri
p
tion
Fragments inspection is enabled The fragments inspection function of the firewall is enabled.
The high-watermark for clamping High threshold of the number of fragment status records.
The low-watermark for clamping Low threshold of the number of fragment status records.
Current records for fragments inspection The current number of records for fragments inspection.
Related commands
firewall fragments-inspect
firewall default
Use firewall default to specify the default firewall filtering action of the IPv4 firewall.
Syntax
firewall default { deny | permit }
Default
The default filtering action of the IPv4 firewall is permitting packets to pass (permit).
Views
System view
Default command level
2: System level