The display ma-defend all command displays information about all policies for management and service plane protection.
Usage Scenario
To help the device defend against attacks or unauthorized logins initiated by sending protocol packets, management and service plane protection is used to prevent packets of a specified protocol or all protocols from being sent to the CPU. Using management and service plane protection improves device security and reliability and ensures normal network operation.
To verify management and service plane protection or troubleshoot faults, run the display ma-defend all command to view information about all policies.Precautions
In VS mode, this command is supported only by the admin VS.
The actual command output varies according to the device. The command output here is only an example.
<HUAWEI> display ma-defend all
MA-defend policy type: global-policy
----------------------------------------------------
The global-policy is enabled
--------------------------------------------------
protocol rule
--------------------------------------------------
FTP deny
BGP permit
----------------------------------------------------
Item | Description |
---|---|
MA-defend policy type | Type of policies for management and service plane protection:
|
protocol | Protocol name, which was defined in the protocol command. |
rule | Rule defined in a policy:
|