Cisco Cisco Packet Data Gateway (PDG) Manual De Manutenção
Generally Available 06-30-2010
New Configuration Commands
3-37
Web Element Manager Path
This functionality is not supported at this time on the Web Element Manager.
firewall tcp-first-packet-non-syn
This command configures the action to take on TCP flow starting with a non-syn packet.
CLI (Rulebase Configuration Mode)
firewall tcp-first-packet-non-syn { drop | reset }
default firewall tcp-first-packet-non-syn
Web Element Manager Path
This functionality is not supported at this time on the Web Element Manager.
firewall tcp-idle-timeout-action
This command configures the action to take on TCP idle timeout expiry.
CLI (Rulebase Configuration Mode)
firewall tcp-idle-timeout-action { drop | reset }
default firewall tcp-idle-timeout-action
Web Element Manager Path
This functionality is not supported at this time on the Web Element Manager.
firewall track-list
This command configures the maximum number of server IPs to be tracked that are
involved in any kind of DOS attacks.
involved in any kind of DOS attacks.
CLI (ACS Configuration Mode)
firewall track-list attacking-servers no_of_servers
default firewall track-list attacking-servers
Web Element Manager Path
This functionality is not supported at this time on the Web Element Manager.
flow any-error
This command configures the accounting action for packets dropped by Firewall due to any
error.
error.
CLI (Rulebase Configuration Mode)
flow any-error charging-action charging_action
default flow any-error
Web Element Manager Path
This functionality is not supported at this time on the Web Element Manager.