- recommended-action (close
| close-client | close-server | drop |
- drop-packet | ignore | none);
- [edit security idp custom-attack attack-name ]
Statement introduced in Release 9.3 of JUNOS software.
When the security device detects an attack, it performs the specified action.
This statement is supported on SRX-series devices.
The seven actions are as follows, from most to least severe:
close—Reset the client and the server.
close-client—Reset the client.
close-server—Reset the server.
drop—Drop the particular packet and all subsequent packets of the flow.
drop-packet—Drop the particular packet of the flow.
ignore—Do not inspect any further packets.
none—Do not perform any action.
For configuration instructions and examples, see the JUNOS Software Security Configuration Guide.
security—To view this statement in the configuration.
security-control—To add this statement to the configuration.