The firewall defend ip-fragment enable command enables the IP fragment attack defense.
The undo firewall defend ip-fragment enable command disables the IP fragment attack defense.
firewall defend ip-fragment enable
undo firewall defend ip-fragment enable
None
System view
2: Configuration level
By default, the IP fragment attack defense is disabled.
# Enable the IP fragment attack defense.
<sysname> system-view [sysname] firewall defend ip-fragment enable