Reference Guide

874 | show ipv6 firewall Dell PowerConnect ArubaOS 6.0 Command Line Interface | Reference Guide
show ipv6 firewall
show ipv6 firewall
Example
This example displays the status of all firewall configurations.
The output of this command includes the following parameters:
Parameter Description
Monitor ping attack Displays status on monitoring ICMP pings, frequency (in seconds) at which the attacks are
monitored and the port on which the monitoring is configured.
Monitor TCP SYN attack Status on monitoring TCP SYN messages, frequency (in seconds) at which the attacks are
monitored and the port on which the monitoring is configured.
Monitor IPv6 sessions
attack
Status on TCP and UDP connection requests, in seconds) at which the attacks are
monitored and the port on which the monitoring is configured.
Deny inter user
bridging
Status on Layer-2 traffic forwarding between wired and wireless users, frequency (in
seconds) at which the messages are monitored and the port on which the monitoring is
configured.
Deny all IPv6 fragments Status on IPv6 fragments to be dropped.
Per-packet logging Status on packet logging for the corresponding session rule.
Enforce TCP handshake
before allowing data
Status on TCP handshake between two clients.
Prohibit RST replay
attack
Status on a TCP connections in both directions.
Session Idle Timeout Status on TCP session idle timeout.
Session mirror
destination
Status on mirrored session packet traffic.
Prohibit IPv6 Spoofing Status on IP spoofing. When this option is enabled, IP and MAC addresses are checked;
possible IP spoofing attacks are logged and an SNMP trap is sent.
Enable IPv6 Stateful
Firewall
Status of IPv6 firewall.
(host) #show ipv6 firewall
Global IPv6 firewall policies
-----------------------------
Policy Action Rate Slot/Port
------ ------ ---- ---------
Monitor ping attack Disabled
Monitor TCP SYN attack Disabled
Monitor IPv6 sessions attack Disabled
Deny inter user bridging Disabled
Deny all IPv6 fragments Disabled
Per-packet logging Disabled
Enforce TCP handshake before allowing data Disabled
Prohibit RST replay attack Disabled
Session Idle Timeout Disabled
Session mirror destination Disabled
Prohibit IPv6 Spoofing Disabled
Enable IPv6 Stateful Firewall Disabled