R0106-HP MSR Router Series Security Command Reference(V7)

578
Field Descri
p
tion
Thres(pps)
Threshold for triggering the flood attack prevention, in units of packets sent
to the IP address per second. If no threshold is specified, this field displays a
hyphen (-).
Actions
Prevention actions against the flood attack:
BS—Blocking sources.
CV—Client verification.
D—Dropping packets.
L—Logging.
N—No action.
Ports
Ports that are protected against the flood attack. This field displays port
numbers only for the DNS and HTTP flood attacks. For other flood attacks,
this field displays a hyphen (-).
# Display brief information about all attack defense policies.
<Sysname> display attack-defense policy
Attack-defense Policy Brief Information
------------------------------------------------------------
Policy name Applied list
Atk-policy-1 GigabitEthernet2/1/1
GigabitEthernet2/1/2
GigabitEthernet2/1/3
P2 None
P123 GigabitEthernet2/1/2
Table 84 Command output
Field Descri
p
tion
Policy name Name of the attack defense policy.
Applied list
List of interfaces to which the attack defense policy is applied. If the policy is
applied to the device, this field displays Local.
Related commands
attack-defense policy
display attack-defense policy ip
Use display attack-defense policy ip to display information about IPv4 addresses protected by flood
attack detection and prevention.
Syntax
MSR2000/MSR3000:
display attack-defense policy policy-name { ack-flood | dns-flood | fin-flood | flood | http-flood |
icmp-flood | rst-flood | syn-ack-flood | syn-flood | udp-flood } ip [ ip-address [ vpn
vpn-instance-name ] ] [ count ]
MSR4000: