No relevant resource is found in the selected language.

This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies. Read our privacy policy>Search

Reminder

To have a better experience, please upgrade your IE browser.

upgrade

Fat AP and Cloud AP V200R010C00 Command Reference

Rate and give feedback:
Huawei uses machine translation combined with human proofreading to translate this document to different languages in order to help you better understand the content of this document. Note: Even the most advanced machine translation cannot match the quality of professional translators. Huawei shall not bear any responsibility for translation accuracy and it is recommended that you refer to the English document (a link for which has been provided).
anti-attack flood blacklist enable

anti-attack flood blacklist enable

Function

anti-attack flood blacklist enable command enables the flood blacklist function.

undo anti-attack flood blacklist enable command disables the flood blacklist function.

By default, the flood blacklist function is disabled.

Format

anti-attack flood { arp | dhcp | dhcpv6 | igmp | mdns | nd | other-broadcast | other-multicast } blacklist enable

undo anti-attack flood { arp | dhcp | dhcpv6 | igmp | mdns | nd | other-broadcast | other-multicast } blacklist enable

Parameters

Parameter

Description

Value

arp

Indicates whether to enable the ARP flood blacklist function.

-

dhcp

Indicates whether to enable the DHCP flood blacklist function.

-

dhcpv6

Indicates whether to enable the DHCPv6 flood blacklist function.

-

igmp

Indicates whether to enable the IGMP flood blacklist function.

-

mdns

Indicates whether to enable the mDNS flood blacklist function.

-

nd

Indicates whether to enable the ND flood blacklist function.

-

other-broadcast

Indicates whether to enable the flood blacklist function for broadcast packets other than ARP, DHCP, DHCPv6, and ND packets.

-

other-multicast

Indicates whether to enable the flood blacklist function for multicast packets other than IGMP and mDNSD packets.

-

Views

VAP profile view

Default Level

2: Configuration level

Usage Guidelines

Usage Scenario

After the protocol-based flood blacklist function is enabled, the device considers traffic of a specified protocol (such as DHCP or ARP) with a rate higher than that specified in anti-attack flood sta-rate-threshold a flood attack and adds the STA to the blacklist.

Prerequisites

The flood detection function has been enabled using the undo anti-attack flood disable command.

Example

# Enable the DHCP flood blacklist function.

<Huawei> system-view
[Huawei] wlan
[Huawei-wlan-view] vap-profile name profile1
[Huawei-wlan-vap-prof-profile1] anti-attack flood dhcp blacklist enable
Translation
Download
Updated: 2019-11-21

Document ID: EDOC1100064352

Views: 210070

Downloads: 122

Average rating:
This Document Applies to these Products
Related Version
Related Documents
Share
Previous Next