664
FTP Drop
HTTP None
RSH -
Table 92 Command output
Field
Description
ICMP error message check
Whether ICMP error message check is enabled.
TCP SYN packet check
Whether TCP SYN check is enabled.
Inspected protocol
Protocols to be inspected by ASPF.
Action
Actions on the detected illegal packets:
•
Drop
—Drops illegal packets.
•
Log
—Generates log messages for illegal packets.
•
None
—Allows illegal packets to pass.
If the protocol does not support the action configuration, this
field displays a hyphen (-).
Related commands
aspf policy
display aspf session
Use
display aspf session
to display ASPF sessions.
Syntax
Centralized devices in standalone mode:
display aspf session
[
ipv4
|
ipv6
] [
verbose
]
Distributed devices in standalone mode/centralized devices in IRF mode:
display aspf session
[
ipv4
|
ipv6
] [
slot
slot-number
] [
verbose
]
Distributed devices in IRF mode:
display aspf session
[
ipv4
|
ipv6
] [
chassis
chassis-number slot
slot-number
] [
verbose
]
Views
Any view
Predefined user roles
network-admin
network-operator
Parameters
ipv4
: Displays IPv4 ASPF sessions.
ipv6
: Displays IPv6 ASPF sessions.
slot
slot-number
: Specifies a card by its slot number. If you do not specify a card, this command
displays ASPF sessions on all cards. (Distributed devices in standalone mode.)
slot
slot-number
: Specifies an IRF member device by its member ID. If you do not specify a member
device, this command displays ASPF sessions for all member devices. (Centralized devices in IRF
mode.)
chassis
chassis-number
slot
slot-number
: Specifies a card on an IRF member device. The
chassis-number
argument represents the member ID of the IRF member device. The
slot-number
Summary of Contents for FlexNetwork MSR Series
Page 1005: ...987 ...