Cisco SCE2020-4XGBE-SM Configuration Manual page 311

Software configuration guide
Table of Contents

Advertisement

Chapter 11
Identifying and Preventing Distributed-Denial-Of-Service Attacks
Options
In addition to the attack detector options described above, the following options are available:
ip-address — the IP address for which to display information.
If attack -direction is dual-sided, an IP address must be configured for both the source
(source-ip-address ) and the destination (dest-ip-address ) sides.
portnumber — the port number for which to display information.
From the SCE> prompt, type show interface linecard 0 attack-filter query ((single-sided ip
Step 1
ip-address )|(dual-sided source-IP source-ip-address destination-IP dest-ip-address )) [dest-port
portnumber] configured and press Enter.
Example 1
This example shows a query for a single IP address.
SCE#>show interface linecard 0 attack-filter query single-sided ip 10.1.1.1 configured
Protocol|Side|Dir.|Action|
|
|
--------|----|----|------|----------|----------|-----|----- |------|-----|-----
TCP
TCP
TCP
TCP
UDP
UDP
UDP
UDP
ICMP
ICMP
ICMP
|
ICMP
other
other
other
other
(N) below a value means that the value is set through attack-detector #N.
SCE#>
OL-7827-12
|
|
|Open flows|Ddos-Susp. flows|filter|filter|notif|
|
|
|rate
|net.|src.|Report|
|net.|dst.|Report|
|sub.|src.|Report|
|sub.|dst.|Report|
|net.|src.|Report|
|net.|dst.|Report|
|sub.|src.|Report|
|sub.|dst.|Report|
|net.|src.|Report|
|net.|dst.|Report|
|sub.|src.|Report|
|
|
|
|sub.|dst.|Report|
|net.|src.|Report|
|net.|dst.|Report|
|sub.|src.|Report|
|sub.|dst.|Report|
Thresholds
|rate
|ratio|
1000|
500|
1000|
500|
1000|
500|
1000|
500|
1000|
500|
1000|
500|
1000|
500|
1000|
500|
500|
250|
500|
250|
500|
250|
|
|
|
500|
250|
500|
250|
500|
250|
500|
250|
500|
250|
Cisco SCE 2000 and SCE 1000 Software Configuration Guide
Monitoring Attack Filtering
|don't- |force-|Sub- |Alarm
|
|
|
50|No
|No
|
No|
50|No
|No
|
No|
50|No
|No
|
No|
50|No
|No
|
No|
50|No
|No
|
No|
50|No
|No
|
No|
50|No
|No
|
No|
50|No
|No
|
No|
50|No
|No
|
No|
50|No
|No
|
No|
50|No
|No
|
Yes|
|
|
(1)|
50|No
|No
|
No|
50|No
|No
|
No|
50|No
|No
|
No|
50|No
|No
|
No|
50|No
|No
|
No|
No
No
No
No
No
No
No
No
No
No
No
No
No
No
No
No
11-27

Advertisement

Table of Contents
loading

This manual is also suitable for:

Sce 2000Sce 1000

Table of Contents