Arp Anti-Attack Source-Mac Threshold; Display Arp Anti-Attack Source-Mac - H3C S5120-SI Series Command Reference Manual

Hide thumbs Also See for S5120-SI Series:
Table of Contents

Advertisement

Note that: If no MAC address is specified in the undo arp anti-attack source-mac exclude-mac
command, all the configured protected MAC addresses are removed.
Examples
# Configure a protected MAC address.
<Sysname> system-view
[Sysname] arp anti-attack source-mac exclude-mac 2-2-2

arp anti-attack source-mac threshold

Syntax
arp anti-attack source-mac threshold threshold-value
undo arp anti-attack source-mac threshold
View
System view
Default Level
2: System level
Parameters
threshold-value: Threshold for source MAC address based ARP attack detection, in the range of 10 to
100.
Description
Use the arp anti-attack source-mac threshold command to configure the threshold for source MAC
address based ARP attack detection. If the number of ARP packets sent from a MAC address within five
seconds exceeds this threshold, the device considers this an attack.
Use the undo arp anti-attack source-mac threshold command to restore the default.
By default, the threshold for source MAC address based ARP attack detection is 50.
Examples
# Configure the threshold for source MAC address based ARP attack detection as 30.
<Sysname> system-view
[Sysname] arp anti-attack source-mac threshold 30

display arp anti-attack source-mac

Syntax
display arp anti-attack source-mac [ interface interface-type interface-number ]
View
Any view
Default Level
1: Monitor level
2-4

Advertisement

Table of Contents
loading

Table of Contents