Applying The Connection Limit Policy; Displaying And Maintaining Connection Limits - HP MSR Series Configuration Manual

Hpe flexnetwork msr router series
Hide thumbs Also See for MSR Series:
Table of Contents

Advertisement

Step

Applying the connection limit policy

To make a connection limit policy take effect, apply it globally or to an interface. The connection limit
policy applied to an interface takes effect only on the specified connections on the interface. The
connection limit policy applied globally takes effect on all the specified connections on the device.
Different connection limit policies can be applied to individual interfaces as well as globally on the
device. In this case, the device matches connections against these policies in the order of the policy
on the inbound interface, the global policy, and the policy on the outbound interface. It cannot accept
new connections as long as the number of connections reaches the lowest upper connection limit
defined by these policies.
On a DS-Lite tunnel network, if the AFTR device uses the Endpoint-Independent Mapping-based
NAT configuration, you must limit connections from external IPv4 networks to access the internal
IPv4 network. To implement B4 device-based connection limits, perform the following tasks:
Add a rule that has the per-ds-lite-b4 to a connection limit policy.
Apply the policy globally or on the DS-Lite tunnel interface.
To apply a connection limit policy:
Step
1.
Enter system view.
2.
Apply a connection limit
policy.

Displaying and maintaining connection limits

Execute display commands in any view and reset commands in user view.
Task
Display the connection limit policy
Command
amount max-amount
min-amount
IPv6 connection limit policy
view:
limit limit-id acl ipv6
{ acl-number | name
acl-name } [ per-destination
| per-service | per-source ]
* amount max-amount
min-amount
Command
system-view
Apply a connection limit
policy globally
connection-limit apply
global { ipv6-policy |
policy } policy-id
Apply a connection limit
policy to an interface.
a. interface interface-type
interface-number
b. connection-limit apply
{ ipv6-policy | policy }
policy-id
Command
display connection-limit { ipv6-policy | policy } { all | policy-id }
465
Remarks
Remarks
N/A
By default, no connection limit is
applied.
Only one IPv4 connection limit
policy and one IPv6 connection
limit policy can be applied. A new
IPv4 or IPv6 connection limit
policy overwrites the old one.

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents