Tcp Attack Prevention Commands - HP FlexNetwork 7500 Series Command Reference Manual

Hide thumbs Also See for FlexNetwork 7500 Series:
Table of Contents

Advertisement

TCP attack prevention commands

tcp anti-naptha enable
Use tcp anti-naptha enable to enable Naptha attack prevention.
Use undo tcp anti-naptha enable to disable Naptha attack prevention.
Syntax
tcp anti-naptha enable
undo tcp anti-naptha enable
Default
Naptha attack prevention is disabled.
Views
System view
Predefined user roles
network-admin
mdc-admin
Usage guidelines
After you enable Naptha attack prevention, the device periodically checks the number of TCP
connections in each state. If the number of TCP connections in a state exceeds the limit, the device
will accelerate the aging of the TCP connections in that state. The check interval is set by the tcp
check-state interval command. The TCP connection limits are set by the tcp state command.
Examples
# Enable Naptha attack prevention.
<Sysname> system-view
[Sysname] tcp anti-naptha enable
Related commands
tcp state
tcp check-state interval
tcp check-state interval
Use tcp check-state interval to set the interval for checking the number of TCP connections in each
state.
Use undo tcp check-state interval to restore the default.
Syntax
tcp check-state interval interval
undo tcp check-state interval
Default
The interval for checking the number of TCP connections in each state is 30 seconds.
600

Advertisement

Table of Contents
loading

Table of Contents