- 306 -
7.13.2.11 dos-control icmpfrag
This command enables the ICMP Fragment Denial of Service protection. If the mode is enabled, Denial
of Service prevention is active for this type of attack. If packets ingress has fragmented ICMP packets,
the packets will be dropped if the mode is enabled.
Syntax
dos-control icmpfrag
no dos-control icmpfrag
no -
This command disables the ICMP Fragment Denial of Service protection.
Default Setting
Disabled
Command Mode
Global Config
7.13.2.12 dos-control smacdmac
This command enables the Source MAC address = Destination MAC address (SMAC=DMAC) Denial of
Service protection. If the mode is enabled, Denial of Service prevention is active for this type of attack. If
packets ingress with SMAC=DMAC, the packets will be dropped if the mode is enabled.
Syntax
dos-control smacdmac
no dos-control smacdmac
no -
This command disables the Source MAC address = Destination MAC address (SMAC=DMAC)
Denial of Service protection.
Default Setting
Disabled
Command Mode
Global Config
7.13.2.13 dos-control tcpfinurgpsh
This command enables the TCP FIN and URG and PSH and SEQ=0 checking Denial of Service
protections. If the mode is enabled, Denial of Service prevention is active for this type of attack. If
Summary of Contents for 548B
Page 1: ...FortiSwitch 548B Version 5 2 0 2 Administration Guide...
Page 492: ...492 Default Setting Decrement 10 Command Mode Interface Config...
Page 869: ...869...
Page 976: ...www fortinet com...