EasyManuals Logo

Cisco 300 Series User Manual

Cisco 300 Series
1117 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #371 background imageLoading...
Page #371 background image
Denial of Service (DoS) Commands
371 OL-32830-01 Command Line Interface Reference Guide
16
switchxxxxxx(config)#
security-suite dos protect add invasor-trojan
16.7 security-suite dos syn-attack
To rate limit Denial of Service (DoS) SYN attacks, use the security-suite dos
syn-attack Interface Configuration mode command. This provides partial blocking
of SNY packets (up to the rate that the user specifies).
To disable rate limiting, use the no form of this command.
Note: This feature is only supported when the device is in Layer 2 switch mode.
Syntax
security-suite dos syn-attack
syn-rate
{
any | ip-address
} {
mask
|
prefix-length
}
no security-suite dos syn-attack {
any | ip-address
} {
mask
|
prefix-length
}
Parameters
• syn-rate—Specifies the maximum number of connections per second.
(Range: 199–1000)
• any | ip-address—Specifies the destination IP address. Use any to specify
all IP addresses.
• mask—Specifies the network mask of the destination IP address.
• prefix-length—Specifies the number of bits that comprise the destination IP
address prefix. The prefix length must be preceded by a forward slash (/).
Default Configuration
No rate limit is configured.
If ip-address is unspecified, the default is 255.255.255.255
If prefix-length is unspecified, the default is 32.
Command Mode
Interface (Ethernet, Port Channel) Configuration mode
User Guidelines
For this command to work, show security-suite configuration must be enabled
both globally and for interfaces.

Table of Contents

Other manuals for Cisco 300 Series

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the Cisco 300 Series and is the answer not in the manual?

Cisco 300 Series Specifications

General IconGeneral
ModelCisco 300 Series
CategorySwitch
DimensionsVaries by model
WeightVaries by model
Power over Ethernet (PoE)Available on select models
ManagementWeb-based GUI, SNMP, CLI
VLANsUp to 256
Security FeaturesACLs, 802.1X, Port Security
Humidity10% to 90% non-condensing
Ports8, 16, 24, 48

Related product manuals