tcp (Security Screen)

Syntax

tcp {fin-no-ack;land;port-scan {threshold number ;}syn-ack-ack-proxy {threshold number ;}syn-fin;syn-flood {alarm-threshold number ;attack-threshold number ;destination-threshold number ;source-threshold number ;timeout seconds ;}syn-frag;tcp-no-flag;tcp-sweep {threshold threshold number;}winnuke;}

Hierarchy Level

[edit security screen ids-option screen-name ]

Release Information

Statement introduced in Release 8.5 of Junos OS.

Description

Configure TCP-layer intrusion detection service (IDS) options.

Options

The remaining statements are explained separately.

Usage Guidelines

For configuration instructions and examples, see the Junos OS Security Configuration Guide.

Required Privilege Level

security—To view this statement in the configuration.

security-control—To add this statement to the configuration.