ip-action (Application-Level DDoS)
Syntax
ip-action {[ip-block | ip-close | ip-notify];timeout seconds;}
Hierarchy Level
[edit security idp idp-policy policy-name rulebase-ddos rule rule-name then]
Release Information
Statement introduced in Release 10.0 of Junos OS.
Description
Specify the actions you want IDP to take against future connections that use the same IP address.
Options
- ip-block—Block future connections of any session that matches the IP action.
- ip-close—Close future connections of any new sessions that match the IP action by sending RST packets to the client and server.
- ip-notify—Do not take any action against traffic, but do log the event.
The remaining statements are explained separately.
Usage Guidelines
For configuration instructions and examples, see the Junos OS Security Configuration Guide.
Required Privilege Level
security—To view this statement in the configuration.
security-control—To add this statement to the configuration.
Hide Navigation Pane
Show Navigation Pane
Download
SHA1