для Cisco Cisco Packet Data Gateway (PDG)
PDSN Service Configuration Mode Commands
access-flow traffic-validation ▀
Command Line Interface Reference, StarOS Release 18 ▄
7939
access-flow traffic-validation
If
access-flow traffic-validation
is enabled for the service and the subscriber then the flows are checked
against the filter rules. If the packets does not match the filter rules, and N violations occur in K seconds, the rp
connection is downgraded to best-effort flow, if it is not already a best-effort flow.
connection is downgraded to best-effort flow, if it is not already a best-effort flow.
Product
PDSN
Privilege
Security Administrator, Administrator
Mode
Exec > Global Configuration > Context Configuration > PDSN Service Configuration
configure > context context_name > pdsn-service service_name
Entering the above command sequence results in the following prompt:
[context_name]host_name(config-pdsn-service)#
Syntax
access-flow traffic-validation [ threshold { interval seconds | violationslimit } ]
no access-flow traffic-validation
default access-flow traffic-validation [ threshold { interval | violations } ]
no
Disable traffic validation for the service.
default
Traffic validation configuration for the service is set to the default value.
threshold
{ [
violations
limit
] [
interval
seconds
] }
violations
limit
: Sets the parameters that determine traffic access violations. This is determined by
setting the maximum number of violations within a set time period. must be an integer from
1
through
100000
.
interval
seconds
Sets the time interval, in seconds. must be an integer from
1
through
100000
.
Usage
Use this command to enable traffic validation for the current PDSN service.
Example
The following command enables traffic validation for the current PDSN service and sets the limit allowed to
100
violations
within
5
seconds:
access-flow traffic-validation threshold violations 100 interval 5