DEFEND/4/hwBaseSecurityUrpfDiscardedRateRising_active: Security URPF drop packets alarmed. (ChassisID=[ChassisID], SlotID=[SlotID], CurrentRateLow=[CurrentRateLow], CurrentRateHigh=[CurrentRateHigh], NotifyEnabled=[NotifyEnabled], RateThreshold=[RateThreshold], RateInterval=[RateInterval])
In VS mode, this log is supported only by the admin VS.
Parameter Name | Parameter Meaning |
---|---|
ChassisID |
Indicates a chassis ID. |
SlotID |
Indicates the slot number of an interface board. |
CurrentRateLow |
Indicates the low 32 bits of traffic statistics. |
CurrentRateHigh |
Indicates the high 32 bits of traffic statistics. |
NotifyEnabled |
Indicates whether the trap function is enabled. 1: Enabled 2: Disabled |
RateThreshold |
Indicates the threshold of a current alarm. |
RateInterval |
Indicates the interval of a current alarm. |
1. Run the display cpu-defend tcpip-defend statistics slot slot-id command to check the information about the interface board protocol CIR and CBS. Check the values of Actual CIR in NP and Actual CBS in NP.
2. Run the display cpu-defend policy policy-number command to check the alarm configuration of Application apperceive Configuration. Check whether the protocol configurations of alarm threshold or alarm interval are reasonable.
3. Run the display attack-source-trace slot slot-id original-information command to check the Attack Source Data. Check the header information cached in the attack source tracing module.
4. Collect the alarm information, log information, and configuration information, and then contact technical support personnel.
5. End.