561
[Sysname-attack-defense-policy-atk-policy-1]
Related commands
• attack-defense apply policy
• display attack-defense policy
attack-defense signature log non-aggregate
Use attack-defense signature log non-aggregate to enable non-aggregated log output for single-packet
attack events.
Use undo attack-defense signature log non-aggregate to restore the default.
Syntax
attack-defense signature log non-aggregate
undo attack-defense signature log non-aggregate
Default
The system outputs aggregated logs for single-packet attack events.
Views
System view
Predefined user roles
network-admin
Usage guidelines
Aggregated log output aggregates all logs generated during a time period and sends one log. The logs
with the same attributes for the following items can be aggregated:
• Interface where the attack is detected.
• Attack type.
• Attack defense action.
• Source and destination IP addresses.
• VPN instance.
HP recommends that you disable non-aggregated log output. A large number of logs will consume the
display resources of the console.
Examples
# Enable non-aggregated log output for single-packet attack events.
<Sysname> system-view
[Sysname] attack-defense signature log non-aggregate
Related commands
signature detect
blacklist enable
Use blacklist enable to enable the blacklist function on an interface.
Use undo blacklist enable to disable the blacklist function on an interface.