ipv6-udp-packet-defend enable

Function

The ipv6-udp-packet-defend enable command enables defense against UDP packet attacks.

The undo ipv6-udp-packet-defend enable command disables defense against UDP packet attacks.

By default, defense against UDP packet attack is enabled.

Format

ipv6-udp-packet-defend enable

undo ipv6-udp-packet-defend enable

Parameters

None

Views

Attack defense policy view

Default Level

2: Configuration level

Task Name and Operations

Task Name Operations
device-mgr write

Usage Guidelines

Usage Scenario

When defense against IPv6 UDP packet attacks is enabled, IPv6 UDP check is performed on the packets received by the interface board. The packet that pass IPv6 UDP check are sent. The packets that fail to pass IPv6 UDP check are discarded. The packets of which the destination port is 7, 13, or 19 are discarded.

In VS mode, this command is supported only by the admin VS.

Example

# Disable defense against IPv6 UDP packet attacks of attack defense policy 6.
<HUAWEI> system-view
[~HUAWEI] cpu-defend policy 6
[*HUAWEI-cpu-defend-policy-6] undo ipv6-udp-packet-defend enable
Copyright © Huawei Technologies Co., Ltd.
Copyright © Huawei Technologies Co., Ltd.
< Previous topic Next topic >