The firewall defend time-stamp enable command enables the defense against IP packets carrying the timestamp option.
The undo firewall defend time-stamp enable command disables the defense against IP packets carrying the timestamp option.
By default, the defense against IP packets carrying the timestamp option is disabled.
After defense against IP packets carrying the timestamp option is enabled, a FW checks whether incoming packets carry the timestamp option. If the packets carry timestamps, the FW discards the packets and records an attack log.