The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

set dospreventionseverity

Prev Next

This command can be used to set the severity for the specified denial-of-service profile. Increasing the DoS prevention severity increases the number of DoS packets dropped.

Syntax:

set dospreventionseverity <dos-measure-name> <inbound | outbound> <0-200>

Parameter

Description

<dos-measure-name>

Sets the DoS measure name as any one of the following names: 'tcp-syn', 'tcp-syn-ack', 'tcp-fin', 'tcp-rst', 'udp', 'icmp-echo', 'icmp-echo-reply', 'icmp-non-echo-reply', 'ip-fragment',and 'non-tcp-udp-icmp'

<inbound>

Sets the direction to 'inbound'

<outbound>

Sets the direction to 'outbound'

<0-200>

Sets the DoS prevention security

Example:

set dospreventionseverity tcp-syn-ack outbound 100

Default Value:

30

Applicable to:

NS-Series Sensors