The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Set Denial-of-Service prevention severity

Prev Next

The set dospreventionseverity command, when executed, sets severity for the specified DoS measure. Increasing the DoS prevention severity increases the number of DoS packets dropped. The default value is 30. The largest value is 200, and the smallest is 0.

Syntax

set dospreventionseverity <dos-measure-name> <inbound | outbound> <0-200>

Takes two arguments:

  • A DoS measure name: one of 'tcp-syn', 'tcp-syn-ack', 'tcp-fin', 'tcp-rst', 'udp', 'icmp-echo', 'icmp-echo-reply', 'icmp-non-echo-reply', 'ip-fragment', and 'non-tcp-udp-icmp'

  • A direction (one of 'inbound' or 'outbound')

For example, set dospreventionseverity tcp-syn-ack outbound 100