9-3
In a secure netw
can cancel the system-defi
tack guard, and
ase
t
s.
ollow these steps to cancel the system-defined ACLs for ICMP attack guard:
ork, you
ned ACLs for ICMP at
thus incre
he available ACL resource
F
To do …
Use the command…
Remarks
Enter system view
system-view
—
Cancel the system-defined ACLs
for ICMP attack guard
undo icmp acl-priority
Required
By default, the system keeps the
system-defined ACLs for ICMP
attack guard.
Before canceling the system-defined ACLs for ICMP attack guard, check ICMP attack vulnerabilities in
the network to make sure that the network can operate properly after you cancel the system-defined
ACLs for ICMP attack guard.
Displaying and Maintaining IP Performance Configuration
To do…
Use the command…
Remarks
Display TCP connection status
display tcp status
Display TCP connection statistics
display tcp statistics
Display UDP traffic statistics
display udp statistics
Display IP traffic statistics
display ip statistics
Display ICMP traffic statistics
display icmp statistics
Display the current socket information of
the system
display ip socket
[
socktype sock-type
]
[
task-id
socket-id
]
Display the forwarding information base
(FIB) entries
display fib
Display the FIB entries matching the
destination IP address
display
fib ip_address1
[ {
mask1 |
mask-length1
} [
ip_address2
{
mask2 |
mask-length2
}
|
longer
] |
longer
]
Display the FIB entries filtering through a
specific ACL
display
fib acl
number
Display the FIB entries in the buffer
which begin with, include or exclude the
specified character string.
display
fib
| {
begin
|
include
|
exclude
}
regular-expression
Display the FIB entries filtering through a
specific prefix list
display
fib
ip-prefix ip-prefix-name
Display the total number of the FIB
entries
display fib
statistics
Available in any
view