Denial of Service (DoS) Commands
78-21075-01 Command Line Interface Reference Guide
50.1
security-suite enable
Use the security-suite enable Global Configuration mode command to enable the
security suite feature. This feature supports protection against various types of
attacks.
When this command is used, hardware resources are reserved. These hardware
resources are released when the no security-suite enable command is entered.
The security-suite feature can be enabled in one of the following ways:
•
Global-rules-only - This enables the feature globally but per-interface
features are not enabled.
•
All (no keyword) - The feature is enabled globally and per-interface.
Use the no form of this command to disable the security suite feature.
When security-suite is enabled, you can specify the types of protection required.
The following commands can be used:
•
security-suite dos protect
•
security-suite dos syn-attack
•
security-suite deny martian-addresses
•
security-suite deny syn
•
security-suite deny icmp
•
security-suite deny fragmented
•
show security-suite configuration
•
security-suite dos protect
Syntax
security-suite enable
no security-suite enable
[global-rules-only]
50
839