When an attack occurs, the device traces packets of all types, and the administrator cannot identify the type of attack packets. You can specify the types of packets that the device traces.
The system view is displayed.
The attack defense policy view is displayed.
The type of traced packets is specified.
By default, the device traces sources of 8021X, ARP, DHCP, DHCPv6, ICMP, ICMPv6, MLD, ND, IGMP, TCP, TCPv6, and Telnet packets.
When attack source tracing is applied to ICMPv6 packets, the function takes effect on only the ICMPv6 packets of which the destination IPv6 addresses are local interface addresses.