freeGuard 100 CLI User Manual
83
show ips anomaly
This example shows how to display the configuration for icmp_flood.
show ips anomaly icmp_flood
config limit
Access the config limit subcommand using the
config ips anomaly <name_str>
command. Use
this command for session control based on source and destination network address. This command is
available for
tcp_src_session, tcp_dst_session, icmp_src_session,
icmp_dst_session, udp_src_session, udp_dst_session
.
You cannot edit the
default
entry. Addresses are matched from more specific to more general. For
example, if you define thresholds for 192.168.100.0/24 and 192.168.0.0/16, the address with the 24 bit
netmask is matched before the entry with the 16 bit netmask.
Command syntax pattern
config limit
edit <name_str>
set <keyword> <variable>
end
config limit
edit <name_str>
unset <keyword>
end
config limit
delete <name_str>
limit command keywords and variables
Keywords & Variables Description
Default
ipaddress
<address_ipv4mask>
The ip address and netmask of the source or
destination network.
No default.
threshold
<threshold_integer>
Set the threshold that triggers this anomaly.
No default.
Example
Use the following command to configure the limit for the tcp_src_session anomaly.
config ips anomaly tcp_src_session
config limit
Summary of Contents for freeGuard 100
Page 1: ...freeGuard 100 UTM Firewall CLI USER S MANUAL P N F0025000 Rev 1 1...
Page 3: ......
Page 7: ......
Page 87: ...80 The config ips anomaly command has 1 subcommand config limit...
Page 183: ...176...