Contents
xiv
Cisco SCE8000 Software Configuration Guide, Rel 3.1.6S
OL-16479-01
How to Disable Specific-IP Detection for ICMP for Single-sided Attacks Defined by the Source
IP 10-10
Configuring the Default Attack Detector 10-10
Options 10-10
How to Define the Default Action and Optionally the Default Thresholds 10-11
How to Reinstate the System Defaults for a Selected Set of Attack Types 10-12
How to Reinstate the System Defaults for All Attack Types 10-12
Specific Attack Detectors 10-12
Options 10-13
How to Enable a Specific Attack Detector and Assign it an AC 10-14
How to Define the Action and Optionally the Thresholds for a Specific Attack Detector 10-14
How to Define the Subscriber Notification Setting for a Specific Attack Detector 10-14
How to Define the SNMP Trap Setting for a Specific Attack Detector 10-14
How to Define the List of Destination Ports for TCP or UDP Protocols for a Specific Attack
Detector 10-15
How to Delete User-Defined Values 10-15
How to Disable a Specific Attack Detector 10-15
How to Disable All Non-default Attack Detectors 10-15
How to Disable All Attack Detectors 10-16
Sample Attack Detector Configuration 10-16
Subscriber Notifications 10-17
Configuring the Subscriber Notification Port 10-17
Options 10-17
How to Remove the Subscriber Notification Port 10-17
Preventing and Forcing Attack Detection 10-18
Options 10-18
Preventing Attack Filtering 10-19
How to Configure a dont-filter Setting for a Specified Situation 10-19
How to Remove a dont-filter Setting from a Specified Situation 10-19
How to Remove All dont-filter Settings 10-19
Forcing Attack Filtering 10-19
How to Configure a force-filter Setting for a Specified Situation 10-20
How to Remove a force-filter Setting from a Specified Situation 10-20
How to Remove All force-filter Settings 10-20
Monitoring Attack Filtering 10-20
Monitoring Attack Filtering Using SNMP Traps 10-20
Monitoring Attack Filtering Using CLI Commands 10-22
How to display a specified attack detector configuration 10-23
How to display the default attack detector configuration 10-24
How to display all attack detector configurations 10-25