999
Service ports
Ports that are protected against the flood attack. This field displays port
numbers only for the DNS and HTTP flood attacks. For other flood attacks,
this field displays a hyphen (-).
Non-specific Whether the global flood attack detection is enabled.
Flood attack defense for
protected IP addresses
Configuration of the IP address-specific flood attack detection and
prevention.
Address Protected IP address.
VPN instance
MPLS L3VPN instance to which the protected IP address belongs. If no
MPLS L3VPN instance is specified, this field displays a hyphen (-).
Thres(pps)
Threshold for triggering the flood attack prevention, in units of packets
sent to the IP address per second. If no threshold is specified, this field
displays
1000
.
Actions
Prevention actions against the flood attack:
• BS—Blocking sources.
• CV—Client verification.
• D—Dropping packets.
• L—Logging.
• N—No action.
Ports
Ports that are protected against the flood attack. This field displays port
numbers only for the DNS and HTTP flood attacks. For other flood attacks,
this field displays a hyphen (-).
# Display brief information about all attack defense policies.
<Sysname> display attack-defense policy
Attack-defense Policy Brief Information
------------------------------------------------------------
Policy Name Applied list
Atk-policy-1 GigabitEthernet1/0/1
GigabitEthernet1/0/2
GigabitEthernet1/0/3
P2 None
P123 GigabitEthernet1/0/2
Table 155 Command output
Policy name Name of the attack defense policy.
Applied list
List of interfaces to which the attack defense policy is applied. If the policy
is applied to the device, this field displays
Local
.
Related commands
attack-defense policy
display attack-defense policy ip
Use display attack-defense policy ip to display information about IPv4 addresses protected by
flood attack detection and prevention.