Cisco 220 Series Smart Plus Reference Manual page 494

Smart plus switches command line interface
Hide thumbs Also See for 220 Series Smart Plus:
Table of Contents

Advertisement

SYN Protection Commands
show security-suite syn protection
Cisco 220 Series Smart Plus Switches Command Line Interface Reference Guide Release 1.0.0.x
Interface
Operational
Name
Status
----------- ------------- ---------------------------------------------
gi13
Normal
The following table describes the significant fields shown in the example:
Field
Protection Mode
Threshold
Recovery
Interface Name
Operational Status
Last Attack
00:57:11 01-Jan-2000 blocked and reported
Description
Action when the SYN flood attack is detected.
Block—The TCP SYN traffic from attacking
ports destined to the local system is blocked,
and a rate-limited syslog message is generated.
Disabled—The SYN protection feature is
disabled.
Report—The TCP SYN traffic from attacking
ports destined to the local system is blocked,
and a rate-limited syslog message is generated.
The SYN protection feature reports about TCP
SYN traffic per port (including rate-limited
syslog message when an attack is identified).
Number of packets per second from a specific port
that triggers identification of TCP SYN attack.
Auto-recovery timeout by which a port from which
SYN packets are blocked gets unblocked.
Interface identifier.
Shows that SYN protection is enabled or disabled on
the interface.
Time of the last SYN flood attack detected on the
interface.
Last Attack
34
453

Advertisement

Table of Contents
loading

Table of Contents