Cisco Cisco Packet Data Gateway (PDG) Manual De Manutenção

Página de 512
Generally Available    06-30-2010
New Configuration Commands
3-37
Web Element Manager Path
This functionality is not supported at this time on the Web Element Manager.
firewall tcp-first-packet-non-syn
This command configures the action to take on TCP flow starting with a non-syn packet.
CLI (Rulebase Configuration Mode)
firewall tcp-first-packet-non-syn { drop | reset }
default firewall tcp-first-packet-non-syn
Web Element Manager Path
This functionality is not supported at this time on the Web Element Manager.
firewall tcp-idle-timeout-action
This command configures the action to take on TCP idle timeout expiry.
CLI (Rulebase Configuration Mode)
firewall tcp-idle-timeout-action { drop | reset }
default firewall tcp-idle-timeout-action
Web Element Manager Path
This functionality is not supported at this time on the Web Element Manager.
firewall track-list
This command configures the maximum number of server IPs to be tracked that are 
involved in any kind of DOS attacks.
CLI (ACS Configuration Mode)
firewall track-list attacking-servers no_of_servers
default firewall track-list attacking-servers
Web Element Manager Path
This functionality is not supported at this time on the Web Element Manager.
flow any-error
This command configures the accounting action for packets dropped by Firewall due to any 
error.
CLI (Rulebase Configuration Mode)
flow any-error charging-action charging_action
default flow any-error
Web Element Manager Path
This functionality is not supported at this time on the Web Element Manager.