Netgear XCM8810 Chassis Hardware Installation Guide - Page 603
disable ip-security anomaly-protection icmp
View all Netgear XCM8810 Chassis manuals
Add to My Manuals
Save this manual to your list of manuals |
Page 603 highlights
NETGEAR 8800 Chassis Switch CLI Manual Syntax Description slot Specifies the slot to be used. all Specifies all IP addresses, or all IP addresses in a particular state. Default The default is disabled. Usage Guidelines This command disables TCP fragment checking. This checking takes effect for IPv4/IPv6. When it is enabled, the switch drops TCP packets if one of following condition is true: • For the first IPv4 TCP fragment (its IP offset field==0), if its TCP header is less than the minimum IPv4 TCP header allowed size • If its IP offset field==1 (for IPv4 only) disable ip-security anomaly-protection icmp disable ip-security anomaly-protection icmp {slot [ | all ]} Description Disables ICMP size and fragment checking. Syntax Description slot Specifies the slot to be used. all Specifies all IP addresses, or all IP addresses in a particular state. Default The default is disabled. Usage Guidelines This command disables ICMP size and fragment checking. This checking takes effect for both IPv4 and IPv6 TCP packets. When enabled, the switch drops ICMP packets if one of following condition is true: • Fragmented ICMP packets for IPv4 packets. • IPv4 ICMP pings packets with payload size greater than the maximum IPv4 ICMP-allowed size. (The maximum allowed size is configurable.) • IPv6 ICMP ping packets with payload size > the maximum IPv6 ICMP-allowed size. (The maximum allowed size is configurable.) Chapter 15. Security Commands | 603