![](/images/new-backgrounds/1307558/30755883x1.webp)
2.9 ddos
This command allows users to configure the settings for DoS defense system.
ddos
ddos
ddos
Syntax Description |
|
It means to view the configuration of DoS defense system. | |
It means to deactivate the DoS defense system. | |
It means to activate the DoS defense system. | |
It means to enable the defense function for a specific attack and set | |
| its parameter(s). |
ATTACK_F | It means to specify the name of flooding attack(s) or portscan, e.g., |
| synflood, udpflood, icmpflood, or postscan. |
THRESHOLD | It means the packet rate (packet/second) that a flooding attack will |
| be detected. Set a value larger than 20. |
TIMEOUT | It means the time (seconds) that a flooding attack will be blocked. |
| Set a value larger than 5. |
It means to enable the defense function for all attacks listed in | |
| ATTACK_0. |
It means to enable defense function for a specific attack(s). | |
ATTACK_0 | It means to specify a name of the following attacks: ip_option, |
| tcp_flag, land, teardrop, smurf, pingofdeath, traceroute, icmp_frag, |
| syn_frag, unknow_proto, fraggle. |
It means to disable the defense function for a specific attack(s). |
Example
>ddos
The Dos Defense system is Activated >ddos
Synflood is enabled! Threshold=50 <pke/sec> timeout=10 <pke/sec>
36 | Telnet Command Reference Guide V1.1 |