System-Guard Ip Detect-Threshold - 3Com 5500-EI PWR Reference Manual

Hide thumbs Also See for 5500-EI PWR:
Table of Contents

Advertisement

Use the undo system-guard ip detect-maxnum command to restore the maximum number of
infected hosts that can be monitored to the default setting.
By default, System Guard can monitor a maximum of 30 infected hosts.
Examples
# Set the maximum number of infected hosts that can be concurrently monitored to 50.
<Sysname> system-view
System View: return to User View with Ctrl+Z.
[Sysname] system-guard ip detect-maxnum 50

system-guard ip detect-threshold

Syntax
system-guard ip detect-threshold ip-record-threshold record-times-threshold isolate-time
undo system-guard ip detect-threshold
View
System view
Parameters
ip-record-threshold: Maximum number of IP addresses that can be learnt within a 10-second cycle, in
the range of 1 to 100.
record-times-threshold: Maximum number of times an IP address must be hit before an action can be
taken, in the range of 1 to 10.
isolate-time: Isolation time, in the range of 3 to 100. After System Guard takes an action on an
suspected IP address, the system will wait isolate-time before it learns destination address(es) again for
that source IP address.
Description
Use the system-guard ip detect-threshold command to set the maximum number of addresses that
the system can learn, the maximum number of times an address can be hit and the address isolation
time.
Use the undo system-guard ip detect-threshold command to set the maximum number of addresses
that the system can learn, the maximum number of times an address can be hit and the address
isolation time to the default settings.
By default, ip-record-threshold, record-times-threshold and isolate-time are set to 30, 1 and 3
respectively.
4-4

Advertisement

Chapters

Table of Contents
loading

This manual is also suitable for:

5500-ei series

Table of Contents