This command can be used to set the severity for the specified denial-of-service profile. Increasing the DoS prevention severity increases the number of DoS packets dropped.
Syntax:
set dospreventionseverity <dos-measure-name> <inbound | outbound> <0-200>
Parameter | Description |
|---|---|
<dos-measure-name> | Sets the DoS measure name as any one of the following names: 'tcp-syn', 'tcp-syn-ack', 'tcp-fin', 'tcp-rst', 'udp', 'icmp-echo', 'icmp-echo-reply', 'icmp-non-echo-reply', 'ip-fragment',and 'non-tcp-udp-icmp' |
<inbound> | Sets the direction to 'inbound' |
<outbound> | Sets the direction to 'outbound' |
<0-200> | Sets the DoS prevention security |
Example:
set dospreventionseverity tcp-syn-ack outbound 100
Default Value:
30
Applicable to:
NS-Series Sensors