< Home

anti-ddos source-ip detect ttl enable

Function

The anti-ddos source-ip detect ttl enable command enables the TTL detection function of the source authentication.

The undo anti-ddos source-ip detect ttl enable command disables the TTL detection function of the source authentication.

Format

anti-ddos source-ip detect ttl enable

undo anti-ddos source-ip detect ttl enable

Parameters

None

Views

System view

Default Level

2: Configuration level

Usage Guidelines

After the TTL detection function of the source authentication is globally enabled, the function takes effect for all defense functions supporting the source authentication. During the source authentication, the device checks the TTL values of packets, which provides better defense against attack packets.

By default, the TTL detection function of the source authentication is disabled.

Example

# Enable the TTL detection function of the source authentication.

<sysname> system-view
[sysname] anti-ddos source-ip detect ttl enable
Copyright © Huawei Technologies Co., Ltd.
Copyright © Huawei Technologies Co., Ltd.
< Previous topic Next topic >