This command enables TCP Fragment Denial of Service protection. If the mode is enabled, Denial of Service prevention is active for this type of attack and packets that have a TCP payload in which the IP payload length minus the IP header size is less than the minimum allowed TCP header size are dropped.
| Default | Disabled |
| Format | dos-control tcpfrag |
| Mode | Global Config |
Print
this page
Email this topic
Feedback