Show Firewall Session Source; Tcp-Fin-No-Ack - Alcatel-Lucent OmniAccess 700 CLI Command Reference Manual

Release versions: 2.2; 2.2-r02; 2.3
Table of Contents

Advertisement

SHOW FIREWALL SESSION SOURCE

show firewall session [source {<ip-address>|<ip-address/prefix-
length>} [<1-65535>]]
D
ESCRIPTION
This command is entered in the Super User mode or Configuration mode or
Interface Configuration mode. This command is used to view the firewall session
details given the source address.
P
ARAMETERS
ip-address
ip-address/prefix-length
1-65535
E
XAMPLE
ALU(config-if GigabitEthernet7/1)# show firewall session source
10.91.1.108
ID 70 ICMP timeout 25 secs, used by NAT
Initiator: (10.91.1.108:13)=>(10.91.0.1:13)
Responder: (10.91.0.1:34416)=>(10.91.1.108:34416)
-
-
-
TCP
FIN
NO
ACK

tcp-fin-no-ack

D
ESCRIPTION
TCP packets without ACK are set for FIN.This leads to system crashing at times.
To avoid this mishap, include the above command in the user-defined attack
prevention list or just use the "default" keyword.
P
ARAMETERS
None.
E
XAMPLE
ALU(config-firewall-attack-A1)# tcp-fin-no-ack
OmniAccess 700 CLI Command Reference Guide
Beta
Except on the first page, right running head:
Heading1 or Heading1NewPage text (automatic)
Parameter
Alcatel-Lucent
show firewall session source
Description
Source IP address.
Source IP address with prefix length.
Denotes the port number.
Beta
625

Advertisement

Table of Contents
loading

Table of Contents