The firewall defend source-route enable command enables the defense against IP packets carrying the source route option.
The undo firewall defend source-route enable command disables the defense against IP packets carrying the source route option.
By default, the defense against IP packets carrying the source route option is disabled.
After the defense against IP packets carrying the source route option is configured, the device checks whether incoming packets contain the source route option. If yes, the packets are discarded.