Command Reference Guide

Denial of Service Commands
CLI Command Reference
September 2014 Page 479
HP Moonshot Switch Module CLI Command Reference
TCP Port Mode The administrative mode of TCP Port DoS prevention. When enabled,
this causes the switch to drop packets that have the TCP source port
equal to the TCP destination port.
UDP Port Mode The administrative mode of UDP Port DoS prevention. When enabled,
this causes the switch to drop packets that have the UDP source port
equal to the UDP destination port.
SIPDIP Mode The administrative mode of SIP=DIP DoS prevention. Enabling this
causes the switch to drop packets that have a source IP address equal
to the destination IP address. The factory default is disabled.
SMACDMAC Mode The administrative mode of SMAC=DMAC DoS prevention. Enabling
this causes the switch to drop packets that have a source MAC address
equal to the destination MAC address.
TCP FIN&URG& PSH Mode The administrative mode of TCP FIN & URG & PSH DoS prevention.
Enabling this causes the switch to drop packets that have TCP flags FIN,
URG, and PSH set and TCP Sequence Number = 0.
TCP Flag & Sequence Mode The administrative mode of TCP Flag DoS prevention. Enabling this
causes the switch to drop packets that have TCP control flags set to 0
and TCP sequence number set to 0.
TCP SYN Mode The administrative mode of TCP SYN DoS prevention. Enabling this
causes the switch to drop packets that have TCP Flags SYN set.
TCP SYN & FIN Mode The administrative mode of TCP SYN & FIN DoS prevention. Enabling
this causes the switch to drop packets that have TCP Flags SYN and FIN
set.
TCP Fragment Mode The administrative mode of TCP Fragment DoS prevention. Enabling
this causes the switch to drop packets that have an IP fragment offset
equal to 1.
TCP Offset Mode The administrative mode of TCP Offset DoS prevention. Enabling this
causes the switch to drop packets that have a TCP header Offset equal
to 1.
Term Definition