HPE Moonshot 45Gc Security Configuration Manual page 481

Switch module
Table of Contents

Advertisement

DNS flood
1000(default)
HTTP flood
1000(default)
Flood attack defense for protected IP addresses:
Address
192.168.2.1
If the device receives TCP flag attack packets or scanning attack packets that are destined for the
device, the device outputs logs. If the device receives TCP SYN flood attack packets that are
destined for the protected IP address, the device outputs logs and drops the attack packets. If the
device receives TCP SYN flood attack packets that are destined for the device but not to the
protected IP address, the device outputs logs.
# Display the attack defense statistics.
[Switch] display attack-defense statistics local
Attack policy name: a1
Slot 1:
Scan attack defense statistics:
AttackType
Port scan
Flood attack defense statistics:
AttackType
No flood attacks detected.
Signature attack defense statistics:
AttackType
TCP invalid flags
TCP null flag
TCP all flags
TCP SYN-FIN flags
TCP FIN only flag
-
-
VPN instance Flood type
--
SYN-FLOOD
AttackTimes Dropped
4
AttackTimes Dropped
AttackTimes Dropped
116
709
251
46
130
468
53
Disabled
80
Disabled
Thres(pps) Actions Ports
5000
L,D
0
0
0
0
0
0
-

Advertisement

Table of Contents
loading

Table of Contents