recommended-action

Syntax

recommended-action (close | close-client | close-server | drop | drop-packet | ignore | none);

Hierarchy Level

[edit security idp custom-attack attack-name ]

Release Information

Statement introduced in Release 9.3 of Junos OS.

Description

When the security device detects an attack, it performs the specified action.

Options

The seven actions are as follows, from most to least severe:

close—Reset the client and the server.

close-client—Reset the client.

close-server—Reset the server.

drop—Drop the particular packet and all subsequent packets of the flow.

drop-packet—Drop the particular packet of the flow.

ignore—Do not inspect any further packets.

none—Do not perform any action.

Usage Guidelines

For configuration instructions and examples, see the Junos OS Security Configuration Guide.

Required Privilege Level

security—To view this statement in the configuration.

security-control—To add this statement to the configuration.