Show Security-Suite Configuration - Cisco 300 Series Cli Manual

Small business 300 series managed switches command line interface guide release 1.3
Hide thumbs Also See for 300 Series:
Table of Contents

Advertisement

Denial of Service (DoS) Commands
78-21075-01 Command Line Interface Reference Guide
switchxxxxxx(config)#
switchxxxxxx(config)#
switchxxxxxx(config-if)#
To perform this command, DoS Prevention must be enabled in the per-interface mode.
50.8

show security-suite configuration

Use the show security-suite configuration EXEC mode command to display the
security-suite configuration.
Syntax
show security-suite configuration
Command Mode
EXEC mode
Example
The following example displays the security-suite configuration.
switchxxxxxx# show security-suite configuration
Security suite is enabled (Per interface rules are enabled).
Denial Of Service Protect: stacheldraht, invasor-trojan,
back-office-trojan.
Denial Of Service SYN Attack
Interface
-----------------
gi1
Martian addresses filtering
Reserved addresses: enabled.
Configured addresses: 10.0.0.0/8, 192.168.0.0/16
SYN filtering
Interface
----------------
gi2
ICMP filtering
security-suite enable global-rules-only
gi1
interface
security-suite deny fragmented add any /
IP Address
--------------
176.16.23.0\24
IP Address
--------------
176.16.23.0\24
32
SYN Rate (pps)
--------------
100
TCP port
--------------
FTP
50
849

Advertisement

Table of Contents
loading

Table of Contents