fw sam_policy
Description
Manages the Suspicious Activity Policy editor to works with the Rate Limiting rules.
See sk112454: How to configure Rate Limiting rules for DoS Mitigation.
Also, see the "sam_alert
" command in the R80.20 CLI Reference Guide.
|
Notes:
|
|
Best Practice - SAM Policy rules consume some CPU resources on Security Group Members. Set an expiration for rules that gives you time to investigate, but does not affect performance. Keep only the required SAM Policy rules. If you confirm that an activity is risky, edit the Security Policy |
Syntax for IPv4
|
|
Syntax for IPv6
|
|
Parameters
Parameter |
Description |
||
---|---|---|---|
|
Runs the command in debug mode. Use only if you troubleshoot the command itself.
|
||
|
Adds one Rate Limiting rule See fw sam_policy add. |
||
|
Adds or deletes many Rate Limiting rules at a time. R80.20SP does not support this parameter (Known Limitation MBS-8143). |
||
|
Deletes one configured Rate Limiting rule one at a time. See fw sam_policy del. |
||
|
Shows all the configured Rate Limiting rules. See fw sam_policy get. |