Sensors receive the fragmented packets and hold them until all the fragments arrive or the fragment timer expires. After the fragment timer expires (the default value is set to 30 seconds), the fragments are dropped.
This command allows you to configure the Sensor to forward such fragments instead of dropping them.
Syntax
ipreassembly timeout forward <enable|disable>
Note
This configuration is persisted across Sensor reboots.
Parameter | Description |
|---|---|
enable | Enables the packet fragments to be forwarded |
disable | Disables the packet fragments to be forwarded |
ipreassembly timeout forward status
It displays the status of the ipreassembly timeout forward (enabled or disabled).
Sample Output:
intruShell@john> ipreassembly timeout forward enable
IP Reassembly timeout forward : ENABLED
IPv4 Reassembly timeout frag forward count : 0
IPv6 Reassembly timeout frag forward count : 0
Applicable to:
NS-series Sensors