set threat-prevention anti-bot engine dns-attack-detection

In the R82.00.X releases, this command is available starting from the R82.00.10 version.

Description

DNS Security protections are part of the Anti-Bot Software Blade. The NXNS attack detection detects attacks that exploit vulnerabilities in the recursive DNS resolver to launch amplified denial-of-service (DDoS) attacks.

  • on - Enabled

  • off - Disabled

See:

In WebUI, this corresponds to:

  1. Click the Threat Prevention view > Threat Prevention section > Blade Control page.

  2. Move the Anti-Bot & DNS Security slider to enable.

  3. In the Threat Prevention Engine Settings page, select the NXNS attack detection checkbox.

Syntax

set threat-prevention anti-bot engine dns-attack-detection { enabled | disabled }

Example Command

set threat-prevention anti-bot engine dns-attack-detection enabled