R0106-HP MSR Router Series Security Command Reference(V7)
589
display attack-defense statistics interface
Use display attack-defense statistics interface to display attack detection and prevention statistics on an
interface.
Syntax
MSR2000/MSR3000:
display attack-defense statistics interface interface-type interface-number
MSR4000:
display attack-defense statistics interface interface-type interface-number [ slot slot-number ]
Views
Any view
Predefined user roles
network-admin
network-operator
Parameters
interface-type interface-number: Specifies an interface by its type and number.
slot slot-number: Specifies a card by its slot number. This option is available only when you specify a
global interface, such as a VLAN interface or tunnel interface. If no card is specified, this commands
displays attack detection and prevention statistics on all cards. (MSR4000.)
Examples
# (MSR2000/MSR3000.) Display attack detection and prevention statistics on interface GigabitEthernet
2/1/1.
<Sysname> display attack-defense statistics interface gigabitethernet 2/1/1
Attack policy name: abc
Scan attack defense statistics:
AttackType AttackTimes Dropped
Port scan 2 23
IP sweep 3 33
Distribute port scan 1 10
Flood attack defense statistics:
AttackType AttackTimes Dropped
SYN flood 1 0
ACK flood 1 0
SYN-ACK flood 3 5000
RST flood 2 0
FIN flood 2 0
UDP flood 1 0
ICMP flood 1 0
ICMPv6 flood 1 0
DNS flood 1 0
HTTP flood 1 0
Signature attack defense statistics:
AttackType AttackTimes Dropped