07-Security Command Reference

HomeSupportReference GuidesCommand ReferencesH3C Access Controllers Command References(E3703P61 R2509P61 R3709P61 R2609P61 R3509P61)-6W10207-Security Command Reference
13-TCP Attack Protection Commands
Title Size Download
13-TCP Attack Protection Commands 31.12 KB

TCP attack protection configuration commands

display tcp status

Use display tcp status to display the status of all TCP connections for monitoring TCP connections.

Syntax

display tcp status [ | { begin | exclude | include } regular-expression ]

Views

Any view

Default command level

1: Monitor level

Parameters

|: Filters command output by specifying a regular expression. For more information about regular expressions, see Fundamentals Configuration Guide.

begin: Displays the first line that matches the specified regular expression and all lines that follow.

exclude: Displays all lines that do not match the specified regular expression.

include: Displays all lines that match the specified regular expression.

regular-expression: Specifies a regular expression, a case-sensitive string of 1 to 256 characters.

Examples

# Display the status of all TCP connections.

<Sysname> display tcp status

*: TCP MD5 Connection

TCPCB       Local Add:port      Foreign Add:port    State

03e37dc4     0.0.0.0:4001        0.0.0.0:0           Listening

04217174     100.0.0.204:23      100.0.0.253:65508   Established

Table 1 Command output

Field

Description

*: TCP MD5 Connection

If the status information of a TCP connection contains an asterisk (*), the TCP adopts the MD5 algorithm for authentication.

TCPCB

TCP control block.

Local Add:port

Local IP address and port number.

Foreign Add:port

Remote IP address and port number.

State

State of the TCP connection.

 

tcp syn-cookie enable

Use tcp syn-cookie enable to enable the SYN Cookie feature to protect the device against SYN Flood attacks.

Use undo tcp syn-cookie enable to disable the SYN Cookie feature.

Syntax

tcp syn-cookie enable

undo tcp syn-cookie enable

Default

The SYN Cookie feature is enabled.

Views

System view

Default command level

2: System level

Examples

# Enable the SYN Cookie feature.

<Sysname> system-view

[Sysname] tcp syn-cookie enable

 

  • Cloud & AI
  • InterConnect
  • Intelligent Computing
  • Intelligent Storage
  • Security
  • SMB Products
  • Intelligent Terminal Products
  • Product Support Services
  • Technical Service Solutions
All Services
  • Resource Center
  • Policy
  • Online Help
  • Technical Blogs
All Support
  • Become A Partner
  • Partner Policy & Program
  • Global Learning
  • Partner Sales Resources
  • Partner Business Management
  • Service Business
All Partners
  • Profile
  • News & Events
  • Online Exhibition Center
  • Contact Us
All About Us
新华三官网