arp attack rate-limit-percent

Function

The arp attack rate-limit-percent command sets the percentage of the bandwidth of level-2 CAR for ARP VLAN CAR in the bandwidth of CP-CAR for ARP protocol packets.

The undo arp attack rate-limit-percent command restores the default percentage of the bandwidth of level-2 CAR for ARP VLAN CAR in the bandwidth of CP-CAR for ARP protocol packets.

By default, the percentage of the bandwidth of level-2 CAR for ARP VLAN CAR in the bandwidth of CP-CAR for ARP protocol packets is 80%.

Format

arp attack rate-limit-percent rate-value

undo arp attack rate-limit-percent

Parameters

Parameter Description Value
rate-value

Specifies the percentage of the bandwidth of level-2 CAR for ARP VLAN CAR in the bandwidth of CP-CAR for ARP protocol packets.

The value is an integer ranging from 0 to 100, in percentage. The value 0 indicates no restriction on the bandwidth.

Views

Slot view

Default Level

2: Configuration level

Task Name and Operations

Task Name Operations
soc write

Usage Guidelines

Usage Scenario

ARP VLAN CAR is used to restrict the rate of ARP packets based on interfaces and VLANs. To further suppress excessive ARP packets, level-2 CAR is enabled for ARP packets that have experienced ARP VLAN CAR. The percentage of the bandwidth of level-2 CAR for ARP VLAN CAR in the bandwidth of CP-CAR for ARP protocol packets is 80% by default. The bandwidth of level-2 CAR for ARP VLAN CAR changes dynamically with the bandwidth of CP-CAR for ARP protocol packets. To set the percentage of the bandwidth of level-2 CAR for ARP VLAN CAR in the bandwidth of CP-CAR for ARP protocol packets, run the arp attack rate-limit-percent command.

Configuration Impact

The percentage of the bandwidth of level-2 CAR for ARP VLAN CAR in the bandwidth of CP-CAR for ARP protocol packets affects the rate at which the ARP packets are sent to the CPU. The default value 80% is a proper value. If the percentage is set high, some valid ARP protocol packets may fail to be sent to the CPU.

Precautions

The arp attack rate-limit-percent command is run in the slot view,this command can be configured only in the non-VS view and takes effect in all VSs.

Example

# Set the percentage of the bandwidth of level-2 CAR for ARP VLAN CAR in the bandwidth of CP-CAR for ARP protocol packets to 60%.
<HUAWEI> system-view
[~HUAWEI] slot 1
[~HUAWEI-slot-1] arp attack rate-limit-percent 60
Copyright © Huawei Technologies Co., Ltd.
Copyright © Huawei Technologies Co., Ltd.
< Previous topic Next topic >