disable-fpc (DDoS)
Syntax
disable-fpc;
Hierarchy Level
[edit system ddos-protection global], [edit system ddos-protection protocols protocol-group (aggregate | packet-type)], [edit system ddos-protection protocols protocol-group (aggregate | packet-type) fpc slot-number]
Description
(MX Series routers with only MPCs, T4000 routers with only FPC5s, PTX Series routers, EX9200 switches, or QFX Series switches) Disable DDoS policers for debugging purposes on the card in the specified slot for a particular packet type within a protocol group, on all cards for a particular packet type within a protocol group, or globally on all cards and for all packet types in all protocols. This statement does not affect the state of the Routing Engine policers.
Starting in Junos OS Release 25.4R1, on QFX5000 Series Switches, we’ve hidden the
disable-fpc CLI statement at the following hierarchy levels:
- [
edit system ddos-protection global] - [
set system ddos-protection protocols protocol-group aggregate]
Earlier to this release, when you configure the disable-fpc CLI
statement, the device generated DCPFE core when the device processes a large volume
of data as it restricts the DDOS protection of the CPU.
Required Privilege Level
admin—To view this statement in the configuration.
admin-control—To add this statement to the configuration.
Release Information
Statement introduced in Junos OS Release 11.2.
Support at the [edit system ddos-protection protocols protocol-group (aggregate | packet-type)] hierarchy level introduced in Junos
OS Release 12.1.