To make sure fast packet drop rules are being enforced, run the command:
sim dropcfg –l
The output shows list of active drop rules:
Drop rules (Match after conn lookup):
Source Destination DPort PR
------------------ ------------------ ----- ---
1.1.1.1/32 * * *
* * 80 6
1.1.1.0/24 2.2.0.0/16 53 17
|