Release Notes

341 | firewall Dell Networking W-Series ArubaOS 6.4.x| Reference Guide
Parameter Description Range Default
log-icmp-error
Logs received ICMP errors. You
should not enable this option
unless instructed to do so by a
Dell representative.
disabled
prevent-dhcp-exhaustion
Enable check for DHCP client
hardware address against the
packet source MAC address. This
command checks the frame's
source-MAC against the DHCPv4
client hardware address and
drops the packet if it does not
match. Enabling this feature pre-
vents a client from submitting mul-
tiple DHCP requests with
different hardware addresses,
thereby preventing DHCP pool
depletion.
disabled
prohibit-arp-spoofing
Detects and prohibits arp
spoofing. When this option is
enabled, possible arp spoofing
attacks are logged and an SNMP
trap is sent.
disabled
prohibit-ip-spoofing
Detects IP spoofing (where an
intruder sends messages using
the IP address of a trusted
client). When this option is
enabled, source and destination
IP and MAC addresses are
checked; possible IP spoofing
attacks are logged and an SNMP
trap is sent.
enabled
in IPv4
disabled
in IPv6
prohibit-rst-replay
Closes a TCP connection in both
directions if a TCP RST is
received from either direction.
You should not enable this
option unless instructed to do so
by a Dell representative.
disabled
session-idle-timeout
Time, in seconds, that a non-TCP
session can be idle before it is
removed from the session table.
You should not modify this
option unless instructed to do so
by a Dell representative.
16-259 15
seconds
session-mirror-destination
This parameter is deprecated.
Use the packet-capture
command.
session-mirror-ipsec
This parameter is deprecated.
Use the packet-capture com-
mand.
session-tunnel-fib
Enable session tunnel-based
forwarding.
disabled