Security-Suite Enable - Cisco Small Business 300 1.1 Series Administration Manual

Managed switch
Table of Contents

Advertisement

Quality of Service (QoS) Commands
78-20269-01 Command Line Interface Reference Guide

41.43 security-suite enable

Use the security-suite enable Global Configuration mode command to enable the
security suite feature. This feature supports protection against various types of
attacks.
When this command is used, hardward resources are reserved. These hardware
resources are released when the no security-suite enable command is entered.
The security-suite feature can be enabled in one of the following ways:
Global-rules-only - This enables the feature globally but per-interface
features are not enabled.
All (no keyword) - The feature is enabled globally and per-interface.
Use the no form of this command to disable the security suite feature.
When security-suite is enabled, you can specify the types of protection required.
The following commands can be used:
security-suite dos protect
security-suite dos syn-attack
security-suite deny martian-addresses
security-suite deny syn
security-suite deny icmp
security-suite deny fragmented
show security-suite configuration
security-suite dos protect
Syntax
security-suite enable
no security-suite enable
Parameters
global-rules-only—Specifies that all the security suite commands are global
commands only (they cannot be applied per-interface). This setting saves space
in the Ternary Content Addressable Memory (TCAM). If this keyword is not used,
security-suite commands can be used both globally on per-interface.
[global-rules-only]
41
600

Advertisement

Table of Contents
loading

Table of Contents