No relevant resource is found in the selected language.

This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies. Read our privacy policy>Search


To have a better experience, please upgrade your IE browser.


NE20E-S2 V800R010C10SPC500 Configuration Guide - Security 01

This is NE20E-S2 V800R010C10SPC500 Configuration Guide - Security
Rate and give feedback:
Huawei uses machine translation combined with human proofreading to translate this document to different languages in order to help you better understand the content of this document. Note: Even the most advanced machine translation cannot match the quality of professional translators. Huawei shall not bear any responsibility for translation accuracy and it is recommended that you refer to the English document (a link for which has been provided).
Configuring the Alarm Function for Packet Discarding

Configuring the Alarm Function for Packet Discarding

You can set the interval for checking the number of discarded packets and the alarm threshold for the packet discarding rate.


To view the status of a device that drops too many packets, configure the alarm function for packet discarding. When the alarm function is enabled, the router checks the number of the packets dropped within a specified time period. If the number of dropped packets reaches or exceeds the set alarm threshold, an alarm is reported.

This feature is supported only on the Admin-VS.


  1. Run system-view

    The system view is displayed.

  2. Run cpu-defend policy policy-number

    The attack defense policy view is displayed.

  3. Run alarm drop-rate { application-apperceive | blacklist | index index | ma-defend | tcpip-defend | total-packet | user-defined-flow flow-id | whitelist | whitelist-v6 | urpf | ttl-expired-loop } enable

    The alarm for the discarding of the packets sent to the CPU is enabled.

  4. Run alarm drop-rate { application-apperceive | index index | tcpip-defend | user-defined-flow flow-id | whitelist | whitelist-v6 | urpf } { threshold threshold-value | interval interval-value | speed-threshold speed-value } *

    The alarm threshold of discarding the packets to be sent to the CPU is set.

  5. Run alarm drop-rate ttl-expired-loop { threshold ttl-expired-loop-threshold-value | interval ttl-expired-loop-interval-value }

    The alarm parameters are configured for TTL timeout loop detection.

  6. Run commit

    The configuration is committed.

    The configured alarm threshold and intervals still take effect after the undo alarm drop-rate enable and then alarm drop-rate enable commands are used.

Updated: 2019-01-02

Document ID: EDOC1100055397

Views: 20269

Downloads: 39

Average rating:
This Document Applies to these Products
Related Version
Related Documents
Previous Next