Display Aspf Session - H3C MSR Series Command Reference Manual

Comware 7 security
Hide thumbs Also See for MSR Series:
Table of Contents

Advertisement

network-operator
Parameters
aspf-policy-number: Specifies the number of an ASPF policy. The value range for this argument is 1
to 256.
default: Specifies the predefined ASPF policy.
Examples
# Display the configuration of ASPF policy 1.
<Sysname> display aspf policy 1
ASPF policy configuration:
Policy number: 1
ICMP error message check: Disabled
TCP SYN packet check: Enabled
Inspected protocol
FTP
HTTP
RSH
Table 121 Command output
Field
ICMP error message check
TCP SYN packet check
Inspected protocol
Action
Related commands
aspf policy

display aspf session

Use display aspf session to display ASPF sessions.
Syntax
Centralized devices in standalone mode:
display aspf session [ ipv4 | ipv6 ] [ verbose ]
Distributed devices in standalone mode/centralized devices in IRF mode:
display aspf session [ ipv4 | ipv6 ] [ slot slot-number ] [ verbose ]
Distributed devices in IRF mode:
display aspf session [ ipv4 | ipv6 ] [ chassis chassis-number slot slot-number ] [ verbose ]
Views
Any view
Action
Drop
None
-
Description
Whether ICMP error message check is enabled.
Whether TCP SYN check is enabled.
Protocols to be inspected by ASPF.
Actions on the detected illegal packets:
Drop—Drops illegal packets.
Log—Generates log messages for illegal packets.
None—Allows illegal packets to pass.
If the protocol does not support the action configuration, this
field displays a hyphen (-).
815

Advertisement

Table of Contents
loading

Table of Contents