< Home

anti-ddos syn-flood source-detect (System view)

Function

The anti-ddos syn-flood source-detect command enables global source authentication defense against SYN flood attacks.

The undo anti-ddos syn-flood source-detect command disables global source authentication defense against SYN flood attacks.

Format

anti-ddos syn-flood source-detect

undo anti-ddos syn-flood source-detect

Parameters

None

Views

System view

Default Level

2: Configuration level

Usage Guidelines

By default, the source authentication defense against SYN flood attacks is disabled.

After the global source authentication defense against SYN flood attacks is enabled in the system view, the defense is triggered when the rate of SYN packets destined for the same destination IP address reaches the alarm threshold (configured by the anti-ddos syn-flood defend alert-rate command).

Example

# Enable global source authentication defense against SYN flood attacks.

<sysname> system-view
[sysname] anti-ddos syn-flood source-detect
Copyright © Huawei Technologies Co., Ltd.
Copyright © Huawei Technologies Co., Ltd.
< Previous topic Next topic >