R2511-HP MSR Router Series Security Command Reference(V5)
499
Filed Descri
p
tion
SYN flood action
Action to be taken when a SYN flood attack is detected. It can
be Drop-packet (dropping subsequent packets) or Syslog
(outputting an alarm log).
SYN flood high-rate Global action threshold for SYN flood attack protection.
SYN flood low-rate Global silence threshold for SYN flood attack protection.
SYN flood attack on IP SYN flood attack protection settings for specific IP addresses.
# Display summary configuration information about all attack protection policies.
<Sysname> display attack-defense policy
Attack-defense Policy Brief Information
--------------------------------------------------------------------------
Policy Number Bound Interface
1 GigabitEthernet1/1
50 None
128 GigabitEthernet1/2
Related commands
attack-defense policy
display attack-defense statistics interface
Use display attack-defense statistics interface to display the attack protection statistics of an interface.
Syntax
display attack-defense statistics interface interface-type interface-number [ | { begin | exclude | include }
regular-expression ]
Views
Any view
Default command level
1: Monitor level
Parameters
interface-type interface-number: Specifies an interface by its type and number.
|: Filters command output by specifying a regular expression. For more information about regular
expressions, see Fundamentals Configuration Guide.
begin: Displays the first line that matches the specified regular expression and all lines that follow.
exclude: Displays all lines that do not match the specified regular expression.
include: Displays all lines that match the specified regular expression.
regular-expression: Specifies a regular expression, a case-sensitive string of 1 to 256 characters.
Examples
# Display the attack protection statistics of interface GigabitEthernet 1/1.
<Sysname> display attack-defense statistics interface gigabitethernet 1/1
Attack-defense Statistics Information










