826
slot slot-number
: Specifies a card by its slot number. This option is available only when you specify
the device or a global interface, such as a VLAN interface or tunnel interface. If you do not specify a
card, this command displays IPv4 flood attack detection and prevention statistics for all cards.
(Distributed devices in standalone mode.)
slot slot-number
: Specifies an IRF member device by its member ID. This option is available only
when you specify the device or a global interface, such as a VLAN interface or tunnel interface. If you
do not specify a member device, this command displays IPv4 flood attack detection and prevention
statistics for all member devices. (Centralized devices in IRF mode.)
chassis
chassis-number
slot
slot-number
: Specifies a card on an IRF member device. The
chassis-number
argument represents the member ID of the IRF member device. The
slot-number
argument represents the slot number of the card. This option is available only when you specify the
device or a global interface, such as a VLAN interface or tunnel interface. If you do not specify a card,
this command displays IPv4 flood attack detection and prevention statistics for all cards. (Distributed
devices in IRF mode.)
count
: Displays the number of matching protected IPv4 addresses.
Usage guidelines
The device collects statistics about protected IP addresses for flood attack detection and prevention.
The attackers' IP addresses are not recorded.
If the
interface
and
local
parameters are not specified, this command display IPv4 flood attack
detection and prevention statistics on all interfaces and the device.
Examples
# (Centralized devices in standalone mode.) Display all IPv4 flood attack detection and prevention
statistics.
<Sysname> display attack-defense flood statistics ip
IP address VPN Detected on Detect type State PPS Dropped
192.168.100.221 a0123456789 GE1/0/2 SYN-ACK-FLOOD Normal 1000 4294967295
201.55.7.45 asd GE1/0/2 SYN-ACK-FLOOD Normal 1000 111111111
192.168.11.5 -- GE1/0/3 ACK-FLOOD Normal 1000 222222222
201.55.7.44 -- GE1/0/4 DNS-FLOOD Normal 1000 111111111
192.168.11.4 -- GE1/0/5 ACK-FLOOD Normal 1000 22222222
# (Distributed devices in standalone mode/centralized devices in IRF mode.) Display all IPv4 flood
attack detection and prevention statistics.
<Sysname> display attack-defense flood statistics ip
slot 1:
IP address VPN Detected on Detect type State PPS Dropped
192.168.100.221 a0123456789 GE1/0/2 SYN-ACK-FLOOD Normal 1000 4294967295
201.55.7.45 asd GE1/0/2 SYN-ACK-FLOOD Normal 1000 111111111
192.168.11.5 -- GE1/0/3 ACK-FLOOD Normal 1000 222222222
201.55.7.44 -- GE1/0/4 DNS-FLOOD Normal 1000 111111111
192.168.11.4 -- GE1/0/5 ACK-FLOOD Normal 1000 22222222
slot 2:
IP address VPN Detected on Detect type State PPS Dropped
201.55.1.10 -- GE2/0/3 ACK-FLOOD Normal 1000 222222222
192.168.100.30 -- GE2/0/4 DNS-FLOOD Normal 1000 333333333
192.168.100.66 -- GE2/0/2 SYN-ACK-FLOOD Normal 1000 165467998
# (Distributed devices in IRF mode.) Display all IPv4 flood attack detection and prevention statistics.
<Sysname> display attack-defense flood statistics ip
Slot 1 in chassis 1:
IP address VPN Detected on Detect type State PPS Dropped
Summary of Contents for FlexNetwork MSR Series
Page 1005: ...987 ...