< Home

firewall defend source-route enable

Function

The firewall defend source-route enable command enables the defense against IP packets carrying the source route option.

The undo firewall defend source-route enable command disables the defense against IP packets carrying the source route option.

Format

firewall defend source-route enable

undo firewall defend source-route enable

Parameters

None

Views

System view

Default Level

2: Configuration level

Usage Guidelines

By default, the defense against IP packets carrying the source route option is disabled.

After the defense against IP packets carrying the source route option is configured, the device checks whether incoming packets contain the source route option. If yes, the packets are discarded.

Example

# Enable the defense against IP packets carrying the source route option.

<sysname> system-view
[sysname] firewall defend source-route enable
Copyright © Huawei Technologies Co., Ltd.
Copyright © Huawei Technologies Co., Ltd.
< Previous topic Next topic >