< Home

anti-ddos auto-defend tunnel-session bypass enable

Function

The anti-ddos auto-defend tunnel-session bypass enable command disables dynamic traffic limiting for traffic attack defense from taking effect for tunnel traffic.

The undo anti-ddos auto-defend tunnel-session bypass enable command enables dynamic traffic limiting for traffic attack defense to take effect for tunnel traffic.

Format

anti-ddos auto-defend tunnel-session bypass enable

undo anti-ddos auto-defend tunnel-session bypass enable

Parameters

None

Views

System view

Default Level

3: Management level

Usage Guidelines

Only the USG6635E/6655E, USG6680E and USG6712E/6716E support this command.

By default, dynamic traffic limiting for traffic attack defense does not take effect for tunnel traffic.

Tunnel traffic generally has a high traffic rate. When dynamic traffic limiting is enabled for tunnel traffic, service exceptions may occur. To implement dynamic traffic limiting for tunnel traffic, run the undo anti-ddos auto-defend tunnel-session bypass enable to enable dynamic traffic limiting for traffic attack defense to take effect for tunnel traffic.

Tunnel traffic includes the GRE, IPv6 over IPv4, IPv4 over IPv6, L2TP, IPSec, and VXLAN traffic.

Example

# Enable dynamic traffic limiting for traffic attack defense to take effect for tunnel traffic.

<sysname> system-view
[sysname] undo anti-ddos auto-defend tunnel-session bypass enable
Copyright © Huawei Technologies Co., Ltd.
Copyright © Huawei Technologies Co., Ltd.
< Previous topic