<HUAWEI> system-view [~HUAWEI] cpu-defend policy 1 [*HUAWEI-cpu-defend-policy-1] auto-defend enable [*HUAWEI-cpu-defend-policy-1] auto-defend attack-packet sample 5 [*HUAWEI-cpu-defend-policy-1] auto-defend threshold 50 [*HUAWEI-cpu-defend-policy-1] auto-defend trace-type source-ip ...
cpu-defend policy io-board car packet-type ttl-expired cir 8 cbs 10000 car packet-type tcp cir 64 cbs 12032 car packet-type fib-hit cir 16 cbs 10000 auto-defend enable auto-defend attack-packet sample 5 auto-defend threshold 30 auto-defend trace-type source-mac source-ip source-...
The attack packets affect services and may even cause system breakdown. To solve the problem, create an attack defense policy and configure CPU attack defense and attack source tracing in the attack defense policy. Precautions The device supports a maximum of 13 attack defense policies, including ...
The attack packets affect services and may even cause system breakdown. To solve the problem, create an attack defense policy and configure CPU attack defense and attack source tracing in the attack defense policy. Precautions The device supports a maximum of 13 attack defense policies, including ...
1. 执行display auto-defend attack-source命令,检查当前可能的用户攻击源,根据表项中的报文增长速率来判断是否存在异常。 如果存在异常,则请执行步骤2。 如果不存在异常,则无需处理。 2. 在cpu-defend policy模板下对该用户配置过滤器filter,禁止该用户报文上送CPU。查看问题是否解决,如果未解决或者设备不支持过滤器...
<HUAWEI> system-view [~HUAWEI] cpu-defend policy 1 [*HUAWEI-cpu-defend-policy-1] auto-defend enable [*HUAWEI-cpu-defend-policy-1] auto-defend attack-packet sample 5 [*HUAWEI-cpu-defend-policy-1] auto-defend threshold 50 [*HUAWEI-cpu-defend-policy-1] auto-defend trace-type source-ip ...
For example, if all attack packets received by the main control board and LPUs are sent from source IP address 10.1.1.0, configure an attack defense policy to block packets from this IP address and apply this policy to the main control board and LPUs. If the main control board is attack...
cpu-defend policy cpu-defend-policy cpu-defend trap drop-packet deny description (attack defense policy view) display auto-defend attack-source display auto-defend configuration display auto-defend whitelist display auto-port-defend attack-source display auto-port-defend configuration display auto-port-...
The attack packets affect services and may even cause system breakdown. To solve the problem, create an attack defense policy and configure CPU attack defense and attack source tracing in the attack defense policy. Precautions The device supports a maximum of 13 attack defense policies, including ...
The attack packets affect services and may even cause system breakdown. To solve the problem, create an attack defense policy and configure CPU attack defense and attack source tracing in the attack defense policy. Precautions The device supports a maximum of 13 attack defense policies, including ...