Supported Platforms
Related Documentation
Configuring the Culprit Flow Reporting Rate for All Protocol Groups and Packet Types
When flow detection confirms that a suspicious flow it is tracking on a line card is indeed a culprit flow, it sends a report to the Routing Engine. Flow detection also reports each culprit flow that subsequently recovers to within the allowed bandwidth or is cleared. You can include the flow-report-rate statement to limit how many flows per second on each line card can be reported. Culprit flow events are reported for all protocol groups and packet types by default. When too many flows are reported, congestion can occur on the host path to the Routing Engine flow.
To globally configure the maximum report rate for culprit flows:
- Set the reporting rate.[edit system ddos-protection global]user@host# set flow-report-rate rate