rst-invalidate-session

Syntax

rst-invalidate-session;

Hierarchy Level

[edit security flow tcp-session]

Release Information

Statement introduced in Release 8.5 of Junos OS.

Description

Enable the device to mark a session for immediate termination when it receives a TCP reset (RST) message. By default, this feature is disabled and the device applies the normal session timeout interval. For TCP, normal session timeout is 30 minutes; for HTTP, it is 5 minutes; and for UDP, it is 1 minute.

Usage Guidelines

For configuration instructions and examples, see the Junos OS Security Configuration Guide.

Required Privilege Level

security—To view this statement in the configuration.

security-control—To add this statement to the configuration.