The system view is displayed.
The attack defense policy view is displayed.
The attack source tracing mode is specified.
By default, attack source tracing is based on source IP addresses and source MAC addresses.
When the attack source tracing mode is source-ip and action is error-down, if multiple interfaces receive the attack packets with the same source IP address and the packet rate exceeds the threshold, the switch shuts down only one interface, and then checks packet rate again. If the packet rate is still higher than the threshold, the switch shuts down another interface. The switch repeats the operations until the packet rate falls below the threshold.