EasyManuals Logo

Cisco Sx350 User Manual

Cisco Sx350
1323 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #265 background imageLoading...
Page #265 background image
10
Cisco Sx350 Ph. 2.2.5 Devices - Command Line Interface Reference Guide 264
Denial of Service (DoS) Commands
10.0
10.1 security-suite deny fragmented
To discard IP fragmented packets from a specific interface, use the security-suite
deny fragmented Interface (Ethernet, Port Channel) Configuration mode
command.
To permit IP fragmented packets, use the no form of this command.
Syntax
security-suite deny fragmented
{[add {ip-address | any} {mask | /prefix-length}] |
[remove {ip-address | any} {mask | /prefix-length}]}
no security-suite deny fragmented
Parameters
• add
ip-address
|
any
—Specifies the destination IP address. Use any to
specify all IP addresses.
• mask—Specifies the network mask of the IP address.
• prefix-length—Specifies the number of bits that comprise the IP address
prefix. The prefix length must be preceded by a forward slash (/).
Default Configuration
Fragmented packets are allowed from all interfaces.
If mask is unspecified, the default is 255.255.255.255.
If prefix-length is unspecified, the default is 32.
Command Mode
Interface (Ethernet, Port Channel) Configuration mode

Table of Contents

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the Cisco Sx350 and is the answer not in the manual?

Cisco Sx350 Specifications

General IconGeneral
BrandCisco
ModelSx350
CategorySwitch
LanguageEnglish

Related product manuals