Chapter 3. Command Reference

conf t action-setaction-set-name threshold threshold-period

The configure terminal action-set command configures new or existing action sets. The following subcommands determine the action that each named action set takes.

allowed-dest [add remove]

adds or removes a quarantine allowed destination.

apply-only [add remove]

adds or removes a CIDR from the quarantine apply-only list.

block

creates or modifies an action set that blocks traffic.

quarantine

creates or modifies an action set that quarantines blocked traffic.

reset-both

creates or modifies an action set that performs a TCP reset on both the source and destination of blocked traffic.

reset-destination

creates or modifies an action set that performs a TCP reset on the destination of blocked traffic.

reset-source

creates or modifies an action set that performs a TCP reset on the source of blocked traffic.

delete

deletes the named action set.

non-web-block

blocks non-web requests from quarantined hosts. Use non-web-block no to permit non-web requests.

notify-contact [add remove]

adds or removes a notification contact from an action set

packet-trace

enables and sets packet trace settings. You can enter a priority (high, medium, or low) and the number of bytes to capture (64-1600).

permit

creates or modifies an action set that permits traffic.

rate-limit rate

creates or modifies an action set that rate-limits. Enter the desired rate in Kpbs.

34 X Family CLI Reference V 2.5.1