Network Attack Prevention Configuration
Except on the first page, right running head:
Heading1 or Heading1NewPage text (automatic)
751
Alcatel-Lucent
Beta Beta
OmniAccess 5740 Unified Services Gateway CLI Configuration Guide
NETWORK ATTACK PREVENTION CONFIGURATION COMMANDS
This section provides the commands used to prevent network attacks.
T
O ENTER FIREWALL CONFIGURATION MODE
EXAMPLE
ALU(config)# firewall
ALU(config-firewall)#
T
O CONFIGURE DOS ATTACK OBJECT
EXAMPLE
ALU(config-firewall)# attack A1
ALU(config-firewall-attack-A1)#
T
O CONFIGURE DEFAULT ATTACKS (RATE LIMITING / NON-RATE LIMITING) FOR AN
A
TTACK OBJECT
During system bootup, an attack object and a policy map is created by the
system. These are the System-default Attack Object and the System-default
Policy. This system-default policy is attached to the system-default attack object,
and by default is attached to the system traffic.
Note:
1. You can only modify the system default attack object but cannot delete it.
2. You cannot modify/delete the system default policy.
3. You can modify/delete the user created attack objects and the attack
policies associated to it.
Command (in CM) Description
firewall This command enters the firewall
configuration mode.
Command (in FwCM) Description
attack <name> This command is used to configure an
attack object to be attached to a firewall
policy.