No relevant resource is found in the selected language.

This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies. Read our privacy policy>Search


To have a better experience, please upgrade your IE browser.


OSN 500 550 580 V100R008C50 Alarms and Performance Events Reference 02

Rate and give feedback :
Huawei uses machine translation combined with human proofreading to translate this document to different languages in order to help you better understand the content of this document. Note: Even the most advanced machine translation cannot match the quality of professional translators. Huawei shall not bear any responsibility for translation accuracy and it is recommended that you refer to the English document (a link for which has been provided).



The PRO_PKT_FLOODING is an alarm indicates the NE is under a flooding attack of protocol packets. The PRO_PKT_FLOODING alarm is reported when the rate of protocol packets of a type exceeds the maximum speed for consecutive 30 seconds.


Alarm Severity Alarm Type


Security alarm


When you view an alarm on the network management system, select the alarm. In the Alarm Details field display the related parameters of the alarm. The alarm parameters are in the following format: Alarm Parameters (hex): parameter1 parameter2...parameterN. For details about each parameter, refer to the following table.

Name Meaning

Parameter 1, parameter 2

Indicates the slot number.

Parameter 3, parameter 4

Indicates the packet type.

Parameter 5, parameter 6

The fixed value is 0xFFFF.

Impact on the System

If the PRO_PKT_FLOODING alarm is generated, a large number of CPU resources are occupied and the system is unstable. In addition, normal protocol packets may be lost.

Possible Causes

The possible causes of the PRO_PKT_FLOODING alarm include:

The rate of protocol packets of a type exceeds the maximum speed for consecutive 30 seconds.


  1. Check the PRO_PKT_FLOODING alarm on the NMS. Parameters 3 and 4 indicate whether the ports on the alarmed board are configured with that protocol.
  2. If these ports are configured with that protocol, use the packet traffic on the ports to determine whether the ports are under a flooding attack. If these ports are not configured with that protocol, go to 4.
  3. The user should determine whether to disable the port under the flooding attack.


    Disabling the port will lead to protocol interruption on the port.

  4. Check whether the alarm is cleared. If it persists, contact Huawei engineers.

Related Information


Updated: 2019-01-21

Document ID: EDOC1100020975

Views: 75277

Downloads: 138

Average rating:
This Document Applies to these Products
Related Documents
Related Version
Previous Next