Dos-Protect Port - Zte ZXR10 Command Manual

Router/ethernet switch
Hide thumbs Also See for ZXR10:
Table of Contents

Advertisement

Purpose
Command Modes
Syntax
Syntax
Description
Instructions
Example
Related
Commands

dos-protect port

Use this command to set the interface DOS protection function.
Cancel the settings with the no form of this command.
Interface configuration
dos-protect port {any |<interface-name>}{all | icmp | acce
ss-group {<acl-no>|<acl-name>}| precedence <precedence-
value>| vlan-id <vlan-id-value>}<rate-limit> conform-action
<action> exceed-action <action>
no dos-protect port {any |<interface-name>}{all | icmp
|
access-group
<precedence-value>| vlan-id <vlan-id-value>}
any |<interface-na
me>
icmp
all
access-group {<acl-
no>|<acl-name>}
precedence
<precedence-value>
vlan-id <vlan-id-val
ue>
<rate-limit>
conform-action
<action>
exceed-action
<action>
This command is applied to ZXR10 GER.
This example describes how to set all interface ICMP packet DOS
protection function.
ZXR10(config)#interface fei_1/1
ZXR10(config-if)#dos-protect port any icmp 100 conform-action
drop exceed-action drop
dos-protect
dos-protect special
Confidential and Proprietary Information of ZTE CORPORATION
Chapter 3 QoS configuration(Router Series)
{<acl-no>|<acl-name>}|
All interface | The specified interface
All packets
ICMP packet
Matching ACL number | ACL name, ACL
number 1~199
Matching IP priority packet, parameter
range0~7
Matching VLAN ID, range: 0~4094
average rate, unit: number of packets/second,
range: 0~10000
Action for the packet matching the designated
rate:
drop: discard data packet
continue: evaluate next rate-limit command
transmit: send data packet
Action for the packet exceeding the
designated rate:
drop: discard data packet
continue: evaluate next rate-limit command
transmit: send data packet
precedence
41

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents