dynamic-link-protection disable

Function

The dynamic-link-protection disable command disables the dynamic link protection function.

The undo dynamic-link-protection disable command enables the dynamic link protection function.

By default, the dynamic link protection function is enabled.

Format

dynamic-link-protection disable

undo dynamic-link-protection disable

Parameters

None

Views

Attack defense policy view

Default Level

2: Configuration level

Task Name and Operations

Task Name Operations
cpu-defend write

Usage Guidelines

Usage Scenario

As various network protocol packets exist on a network, protocol packets that require sessions to be established, such as BGP, IS-IS, and FTP protocol packets, need sufficient bandwidth for session establishment. In the case of insufficient bandwidth, packets used to establish sessions are dropped, causing the protocol sessions not to be established. When the dynamic link protection function is enabled, after a protocol session is established, sufficient bandwidth can be allocated to ensure uninterrupted protocol sessions.

Configuration Impact

You can configure dynamic link protection to allow protocol packets used to establish sessions to be preferentially sent to the CPU when the bandwidth is guaranteed.

In VS mode, this command is supported only by the admin VS.

Example

# Enable the dynamic link protection function in attack defense policy 6.
<HUAWEI> system-view
[~HUAWEI] cpu-defend policy 6
[*HUAWEI-cpu-defend-policy-6] undo dynamic-link-protection disable
Copyright © Huawei Technologies Co., Ltd.
Copyright © Huawei Technologies Co., Ltd.
< Previous topic Next topic >