2-432
Cisco SCE 8000 CLI Command Reference
Chapter 2 CLI Command Reference
show interface linecard attack-filter
–
query dual-sided-v6 source-IP ip-address1 dest ip-address2 current—Displays the current
counters for v6 attack detection between two specified IP addresses (dual-sided detection).
–
dest-port port-number—Displays the configured threshold values and action for the specified
port. You can include this argument with both single-sided and dual-sided queries.
• current-attacks—Displays all currently handled attacks.
• current-attacks-ipv6—Displays all currently handled attacks for ipv6.
• counters—Displays all attack detection counters.
• dont-filter—Displays all existing stopped attack filters.
• dont-filter-ipv6—Displays all existing stopped attack filters for ipv6.
• force-filter—Displays all existing forced attack filters.
• force-filter-ipv6—Displays all existing forced attack filters for ipv6.
• subscriber-notification ports—Displays the list of subscriber-notification ports.
• subscriber-notification redirect—Displays the configuration of subscriber-notification
redirection, such as the configured destination and dismissal URLs, and allowed hosts.
Authorization: viewer
Examples The following example shows how to display the configuration of attack detection between two specified
IP addresses (dual-sided) for destination port 101:
SCE8000>enable 5
Password:<cisco>
SCE8000>show interface linecard 0 attack-filter
query dual-sided source-IP 10.10.10.10 dest 10.10.10.145 dest-port 101 configured
SCE8000>
The following example shows how to display all existing forced attack filters:
SCE8000>enable 5
Password:<cisco>
SCE8000>show interface linecard 0 attack-filter
force-filter No force-filter commands are set for slot 0
SCE8000>
The following example shows how to display the subscriber notification ports:
SCE8000>enable 5
Password:<cisco>
SCE8000>show interface linecard 0 attack-filter
subscriber-notification ports
Configured Subscriber notification ports: 100
SCE8000>
Related Commands Command Description
attack-filter Enables specific attack detection for a specified protocol and
attack direction.
attack-filter dont-filter | force-filter Prevents attack filtering for a specified IP address or protocol.
Comments to this Manuals