Filter and Firewall
Left running head:
Chapter name (automatic)
734
Beta Beta
OmniAccess 5740 Unified Services Gateway CLI Command Reference Guide
Alcatel-Lucent
SHOW FIREWALL SESSION SOURCE
show firewall session [source {ip <ip-address>|net <ip-address/
prefix-length>} [{<1-65535>|proto {gre|icmp|tcp|udp}
|destination}]
DESCRIPTION
This command is entered in the Super User Mode or Configuration Mode. This
command is used to view the firewall session details given the source address.
PARAMETERS
EXAMPLE
ALU(config)# show firewall session source ip 10.91.1.108
ID 70 ICMP timeout 25 secs, used by NAT
Initiator: (10.91.1.108:13)=>(10.91.0.1:13)
Responder: (10.91.0.1:34416)=>(10.91.1.108:34416)
TCP-FIN-NO-ACK
tcp-fin-no-ack
DESCRIPTION
This command is entered in the Firewall-Attack Sub Configuration Mode. TCP
packets without ACK are set for FIN.This leads to system crashing at times. To
avoid this mishap, include the above command in the user-defined attack
prevention list or just use the “default” keyword.
PARAMETERS
None.
EXAMPLE
ALU(config-firewall-attack-A1)# tcp-fin-no-ack
Parameter Description
ip-address Source IP address.
ip-address/prefix-length Source IP address with prefix length.
1-65535 Denotes the port number.
gre|icmp|tcp|udp Protocol type.