This command displays the severity for a specified denial-of-service profile. It also displays the DoS prevention severity information for different measures.
Syntax:show dosPreventionseverity<dos-measure-name><inbound | outbound>
| Parameter | Description |
|---|---|
| <dos-measure-name> | Indicates the DoS measure name: one of 'tcp-syn', 'tcp-syn-ack', 'tcp-fin', 'tcp-rst', 'udp', 'icmp-echo', 'icmp-echo-reply', 'icmp-non-echo-reply', 'ip-fragment', 'non-tcp-udp-icmp' |
| <direction> | Indicates the direction. It can be 'inbound' or 'outbound'. |
show dospreventionseverity intfport (1A|1B|2A|2B|3A|3B|4A|4B|5A|5B|6A|6B|7A|7B|8A|8B|9A|9B|10A|10B|11A|11B|12A|12B|13A|13B|14A|14B) (tcp-syn|tcp-syn-ack|tcp-fin|tcp-rst|udp|icmp-echo|icmp-echo-reply|icmp-non-echo-echoreply|ip-fragment|non-tcp-udp-icmp) (inbound|outbound)
Sample Output:intruShell@Sensor-6050> show dospreventionseverity tcp-syn-ack outbound
DOS Prevention Severity for tcp-syn-ack outbound is 30
Example:show dospreventionSeverity tcp-syn-ack outbound
Applicable to:NS-series Sensors