Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?


tcp-syn-defense (IDS MS-MPC)


Hierarchy Level


Close unestablished TCP connections and send a TCP RST to the end host to clear the TCP states on it when the open-timeout value at the [edit interfaces interface-name service-options] hierarchy level expires. This provides protection against TCP SYN flooding attacks. This statement can only be used in IDS rules assigned to a service set on an MS-MPC.

Required Privilege Level

interface—To view this statement in the configuration.

interface-control—To add this statement to the configuration.

Release Information

Statement introduced in Junos OS Release 17.1.