< Home

anti-ddos auto-defend rule aging-time

Function

The anti-ddos auto-defend rule aging-time command sets the aging time for automatically delivered dynamic rules.

The undo anti-ddos auto-defend rule aging-time command restores the default aging time (30 minutes).

Format

anti-ddos auto-defend rule aging-time aging-time

undo anti-ddos auto-defend rule aging-time

Parameters

Parameter Description Value
aging-time

Specifies the aging time of automatically delivered dynamic rules.

The value is an integer ranging from 1 to 43200, in minutes. The default value is 30 minutes.

Views

System view

Default Level

3: Management level

Usage Guidelines

The aging time of a dynamic rule starts from the time the rule was created, and the remaining keepalive time is not updated when a packet matches the rule. When the configured aging time elapses, the rule expires.

When attack traffic stops and the corresponding session ages, the corresponding dynamic rule will be automatically deleted.

If the duration of an attack flow is long, set greater aging time for dynamic rules to prevent the dynamic rules from aging before the attack flow stops.

Example

# Set the aging time of automatically delivered dynamic rules to 60 minutes.

<sysname> system-view
[sysname] anti-ddos auto-defend rule aging-time 60
Copyright © Huawei Technologies Co., Ltd.
Copyright © Huawei Technologies Co., Ltd.
< Previous topic Next topic >