Motorola nvg589 Administrator's Hanbook page 158

Vdsl2
Hide thumbs Also See for nvg589:
Table of Contents

Advertisement

Administrator's Handbook
set security spi unknown-ethertypes-drop [ on | off ]
Enables or disables whether packets with unknown ether types are to be dropped. Default is on.
set security spi portscan-protect [ on | off ]
Enables or disables whether to detect and drop port scans. Default is on.
set security spi invalid-tcp-flags-drop [ on | off ]
Enables or disables whether packets with invalid TCP flag settings (NULL, FIN, Xmas, etc.) are to be dropped.
Default is on.
set security spi ip4 invalid-addr-drop [ on | off ]
Broad sets of addresses exist that should not be used as one or both of source or destination addresses. These
include the following:
IP address/mask
10.0.0.0/8
192.168.0.0.0/16
169.254.0.0/16
172.16.0.0/12
224.0.0.0/4
224.0.0.0/5
0.0.0.0/8
255.255.255.255
The default is on.
set security spi ip4 private-addr-drop [ off | on ]
Drops packets sourced or destined for private IPv4 addresses. The default is off.
set security spi flood-limit enable [ on | off ]
Enables or disables whether packet flooding should be detected and offending packets be dropped. Default is on.
set security spi flood-limit limit pps_value
Sets a maximum Packets Per Second (PPS) value for packet flood criterion. Defaults to 4.
set security spi flood-limit burst-limit max_value
Sets a maximum value in a packet-burst for packet flood criterion. Defaults to 8.
set security spi flood-limit icmp enable [ on | off ]
Enables or disables whether ICMP packet flooding should be detected and offending packets be dropped.
Defaults to on.
158
Source or destination
source
source
source
source
Source / destination
Source / destination
Source / destination
destination

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents