935
VPN instance
MPLS L3VPN instance to which the IP address belongs. Two hyphens (--)
indicates that the IP address is on the public network.
DS-Lite tunnel peer
Peer IP address of the DS-Lite tunnel. Two hyphens (--) indicates that the
connection does not belong to a DS-Lite tunnel.
Service
Protocol name and service port number.
For an unwell-known protocol, this field displays
unknown(xx)
. The cross signs
(xx) represents the protocol number. For the ICMP protocol, the protocol number
is the decimal digits that are converted from the hexadecimal contents of the type
and code fields.
Sessions threshold
Hi/Lo
Upper and lower connection limits.
Sessions count Number of current connections.
Sessions limit rate Maximum number of connections established per second.
New session flag
Whether or not new connections can be created:
• Permit—New connections can be created.
• Deny—New connections cannot be created.
NOTE:
When the number of connections reaches the upper limit, this field displays
Permit
although new connections are not allowed. This field displays
Deny
only
when the number of connections exceeds the upper limit.
Related commands
connection-limit apply global policy
connection-limit apply policy
connection-limit policy
limit
limit
Use limit to configure a connection limit rule.
Use undo limit to remove the specified connection limit rule.
Syntax
In IPv4 connection limit policy view:
limit limit-id acl [ ipv6 ] { acl-number | name acl-name } [ per-destination | per-service |
per-source ] * { amount max-amount min-amount | rate rate } * [ description text ]
limit limit-id acl ipv6 { acl-number | name acl-name } per-dslite-b4 { amount max-amount
min-amount | rate rate } * [ description text ]
undo limit limit-id
In IPv6 connection limit policy view:
limit limit-id acl ipv6 { acl-number | name acl-name } [ per-destination | per-service | per-source ]
* { amount max-amount min-amount | rate rate } * [ description text ]
undo limit limit-id
Default
No connection limit rules exist.