Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

Navigation
Guide That Contains This Content
[+] Expand All
[-] Collapse All

    suspicious-control-flow-detection protocol backoff-time

    Syntax

    suspicious-control-flow-detection protocol protocolValue backoff-time backoffTimeValue

    no suspicious-control-flow-detection protocol protocolValue backoff-time

    Release Information

    Command introduced in JunosE Release 7.3.0.

    Description

    Sets the backoff expiration time when the flow is no longer considered suspicious for a specific protocol. The no version restores the default value of 300 seconds for a protocol.

    Options

    • protocolValue—Name of the protocol. For details about the values that are displayed for this attribute in the CLI interface, see the Protocol Mapping section in Understanding DoS Protection. The following names of protocols apply to the protocolValue variable that is available with this command, in addition to the list of protocol names that are described in the Protocol Mapping section.
      • EthernetFcBasedPppTerminate—Ethernet forwarding controller-based PPP Fast Reconnect
      • EthernetOam—Ethernet OAM packet
      • IpFastBfd—IP fast BFD
      • IpLocalFastBfd—IP local fast BFD
      • IpRouteNull0Interface—IP route to null 0 interface
    • backoffTimeValue—Period of time in seconds; 0 or a number in the range 10–1000; a value of zero means that a suspicious flow does not change to the nonsuspicious state because of a timeout; if the low threshold value is zero and the backoff time is zero, the flow is only considered no longer suspicious if the rate (in packets per second) goes to zero

    Mode

    Global Configuration

    Published: 2014-08-18