< Home

Configuring the Types of Traced Packets

Context

When an attack occurs, the device traces packets of all types, and the administrator cannot identify the type of attack packets. You can specify the types of packets that the device traces.

Procedure

  1. Run system-view

    The system view is displayed.

  2. Run cpu-defend policy policy-name

    The attack defense policy view is displayed.

  3. Run auto-defend protocol { all | { 8021x | arp | dhcp | dhcpv6 | icmp | icmpv6 | igmp | mld | nd | tcp | tcpv6 | telnet | ttl-expired | udp | udpv6 }* }

    The type of traced packets is specified.

    By default, the device traces sources of 8021X, ARP, DHCP, DHCPv6, ICMP, ICMPv6, MLD, ND, IGMP, TCP, TCPv6, and Telnet packets.

    When attack source tracing is applied to ICMPv6 packets, the function takes effect on only the ICMPv6 packets of which the destination IPv6 addresses are local interface addresses.

Copyright © Huawei Technologies Co., Ltd.
Copyright © Huawei Technologies Co., Ltd.
< Previous topic Next topic >