Cisco Cisco Packet Data Interworking Function (PDIF)
CSCF Security Configuration Mode Commands
▀ auth-failure-weight
▄ Command Line Interface Reference, StarOS Release 18
3276
auth-failure-weight
Sets a severity number for authorization failures used in calculating a value for determining when to suspend
registration attempts.
registration attempts.
Important:
The system will ignore the configuration of this command unless the
dos-prevention
command
has been enabled.
Product
SCM (P-CSCF, A-BG)
Privilege
Security Administrator, Administrator
Mode
Exec > Global Configuration > Context Configuration > CSCF Service Configuration > Proxy-CSCF Configuration >
CSCF Security Configuration
CSCF Security Configuration
configure > context context_name > cscf service service_name > proxy-cscf > security-
parameters
parameters
Entering the above command sequence results in the following prompt:
[context_name]host_name(config-security-parameters)#
Syntax
auth-failure-weight weight
default auth-failure-weight
default
Sets/restores the default value assigned to the specified command.
weight
Default: 1
Assigns a weight to an authorization failure. Defines the severity of a single authorization failure.
Assigns a weight to an authorization failure. Defines the severity of a single authorization failure.
weight
must be an integer from 1 to 5.
Usage
Use this command to define the severity of an authorization failure. This parameter is used in calculating the
current number of authorization failures to compare to the
current number of authorization failures to compare to the
per-aor-failure-limit
and the
per-ip-
failure-limit
. Configuring this command with a lower number causes the system to suspend registration
attempts with repeated authorization failures much sooner than when configured with a higher number.
Example
The following command assigns a weight of
3
to an authorization failure:
auth-failure-weight 3