
6 - 38 WiNG CLI Reference Guide
Example
rfs7000-37FABE(config)#show firewall dhcp snoop-table on rfs7000-37FABE
Snoop Binding <157.235.208.252, 00-15-70-37-FA-BE, Vlan 4>
Type Controller-SVI, Touched 32 seconds ago
--------------------------------------------------------------------------
Snoop Binding <172.16.10.2, 00-15-70-37-FA-BE, Vlan 1>
Type Controller-SVI, Touched 1 seconds ago
--------------------------------------------------------------------------
rfs7000-37FABE(config)#
rfs7000-37FABE(config)#show firewall dos stats on rfs7000-37FABE
+---------------------------------+-----------------+---------------------
| ATTACK TYPE | COUNT | LAST OCCURENCE |
+---------------------------------+-----------------+---------------------
| udp-short-hdr | 0 | Never |
| tcp-xmas-scan | 0 | Never |
| ascend | 0 | Never |
| ftp-bounce | 0 | Never |
| tcp-null-scan | 0 | Never |
| bcast-mcast-icmp | 0 | Never |
| fraggle | 0 | Never |
| router-advt | 0 | Never |
| tcp-post-syn | 0 | Never |
| winnuke | 0 | Never |
| tcp-header-fragment | 0 | Never |
| tcp-ip-ttl-zero | 0 | Never |
| invalid-protocol | 0 | Never |
| icmp-router-solicit | 0 | Never |
| tcp-intercept | 0 | Never |
| twinge | 0 | Never |
| land | 0 | Never |
| spoof | 0 | Never |
• igmp – Matches IGMP flows
• ip [dst <IP>|proto <0-254>|host <IP> |src] – Displays IP V4
parameters
• dst <IP> – Matches destination IP address
• host <IP> – Matches flows containing IPv4 address
• proto <0-254> – Matches the IPv4 protocol
• src <IP> – Matches source IP address
• max-idle – Matches flows which are idle at most for the given
duration
• min-bytes – Matches flows which has seen at least the given num-
ber of bytes
• min-idle – Matches flows which are idle at least for the given
duration
• min-pkts – Matches flows with at least the given
number of packets
• not – Negates the Filter Expression
• port <1-65535> – Matches either source or destination port
• src port <1-65535> – Matches only source port
• tcp – Matches TCP flows
• udp – Matches UDP flows
• management on <DEVICE-NAME> – Displays firewall flows for
management traffic
• stats on <DEVICE-NAME> – Displays summary of active sessions
• on – On AP/Controller
• <DEVICE-NAME> – On AP/Controller name
• wireless-client <MAC> – Displays firewall flows for wireless clients
Comentarios a estos manuales