Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

header-navigation
keyboard_arrow_up
close
keyboard_arrow_left
Junos CLI Reference
Table of Contents Expand all
list Table of Contents
file_download PDF
{ "lLangCode": "en", "lName": "English", "lCountryCode": "us", "transcode": "en_US" }
English
keyboard_arrow_right

show security idp attack attack-list

date_range 19-Nov-23

Syntax

content_copy zoom_out_map
show security idp attack attack-list attack-group (custom-group | dynamic-group | predefined-group)attack-group-name (recursive)

Description

Display list of all attacks present in the attack group specified.

You can view the attacks that are available in an attack group (predefined, dynamic, and custom attack groups). The attack option has a sub option named attack list that allows you to view attacks in an attack group. The attack list option accommodates three new options (custom, dynamic, and predefined). You can select any of these groups and provide a valid group name to see the list of attacks that belong to that group.

Starting in Junos OS Release 18.3R1, to which an attack belongs.

Options

  • custom-group custom-group—Custom group name.

  • dynamic-group dynamic-group—Dynamic group name.

  • predefined-group predefined-group—Predefined group name.

  • recursive—Recursively search through nested attack-groups.

Required Privilege Level

view

Sample Output

show security idp attack attack-list predefined-group FTP

content_copy zoom_out_map
user@host> show security idp attack attack-list predefined-group FTP
Processing your request, results will show up shortly
FTP:AUDIT:REP-BINARY-DATA
FTP:AUDIT:REP-INVALID-REPLY
FTP:AUDIT:REP-NESTED-REPLY
FTP:MS-FTP:STAT-GLOB
FTP:WS-FTP:CPWD
FTP:OVERFLOW:PATH-LINUX-X86-3
FTP:OVERFLOW:K4FTP-OF1

show security idp attack attack-list predefined-group

Check attack list against each group one at a time.
content_copy zoom_out_map
user@host> show security idp attack attack-list predefined-group Recommended-CTS-1-Year-Old
Processing your request, results will show up shortly!
Please use show security idp attack attack-list predefined-group command on each group listed below to further display attacks
Recommended-CTS-Critical-1-Year-Old
Recommended-CTS-Major-1-Year-Old
Recommended-CTS-Minor-1-Year-Old

show security idp attack attack-list predefined-group idpengine

content_copy zoom_out_map
user@host> show security idp attack attack-list predefined-group idpengine
Processing your request, results will show up shortly!
Please use show security idp attack attack-list predefined-group/dynamic-group command if there are any nested attack-groups listed below to further display attacks
RULEBASE IPS ATTACKS
  HTTP:AUDIT:REQ-LONG-UTF8CODE
  HTTP:CISCO:VOIP:STREAM-ID-REQ
  HTTP:BROWSER:ICQ
  HTTP:INFO-LEAK:SNOOP-DISCLOSURE
  HTTP:CGI:NULL-ENCODING
  HTTP:INFO:MWS-SEARCH-OF1
  HTTP:INFO:TMICRO-PROXY-REQ
  HTTP:AUDIT:URL
  HTTP:TOMCAT:REAL-PATH-REQ
  HTTP:TOMCAT:JSP-BUFFER
  HTTP:TOMCAT:JSP-COMMENTS
  HTTP:TOMCAT:JSP-PAGE
  HTTP:TOMCAT:JSP-DEC-INT-OF
  HTTP:TOMCAT:SOURCE-MAL-REQ
  HTTP:REQERR:BIN-DATA-ACC-ENC
  HTTP:TUNNEL:TELNET
  HTTP:TUNNEL:CHAT-YIM
  HTTP:TUNNEL:CHAT-AOL-IM
  HTTP:UNIX-CMD:UNIX-CMD-A-L
  HTTP:UNIX-CMD:UNIX-CMD-M-Z
  HTTP:TUNNEL:ALTNET-OVER-HTTP
  HTTP:TUNNEL:PROXY
  HTTP:MISC:MOODLOGIC-CLIENT
  HTTP:STREAM:QUICKTIME-CLIENT
  HTTP:TUNNEL:CHAT-MSN-IM
  HTTP:AUDIT:FW1-SCHEME-OF
  HTTP:HOTMAIL:FILE-DOWNLOAD
  HTTP:HOTMAIL:ZIP-DOWNLOAD
  HTTP:INFO:HTTPPOST-GETSTYLE
  HTTP:EXT:DOT-CHM
  HTTP:INFO-LEAK:HTTP-SHARE-ENUM
  HTTP:3COM:ADMIN-LOGOUT
  HTTP:PROXY:HTTP-PROXY-GET
  HTTP:HOTMAIL:FILE-UPLOAD
  HTTP:EXT:DOT-RAT
  HTTP:GMAIL:FILE-UPLOAD
  HTTP:PHP:BZOPEN-OF
  HTTP:COLDFUSION:CF-CLASS-DWLD
  HTTP:AUDIT:ROBOTS.TXT
  HTTP:STREAM:GOOGLE-VIDEO
  HTTP:STREAM:ITUNES-USERAGENT
  HTTP:INFO-LEAK:CC-CLEAR-VAR
  HTTP:IIS:ENCODING:UNICODE
  HTTP:DOMINO:INFO-LEAK
  HTTP:STREAM:YOUTUBE-REQ
HTTP:PASSWD:COMMON
  HTTP:PROXY:LIST:PUBWEBPROXIES
  HTTP:PROXY:ANON:PROXY-2
  HTTP:PROXY:LIST:PROXYFIND
  HTTP:PROXY:ANON:CGIPROXY
  HTTP:EXT:DOT-VML
  HTTP:EXT:DOT-RPT
  HTTP:PROXY:ANON:CONCEAL-WS
  HTTP:PROXY:WPAD-CONNECTION
  HTTP:PROXY:CAW-URI-RES
  HTTP:XDOMAINXML
  HTTP:INFO-LEAK:SSN-CLEARTEXT
  HTTP:AUDIT:LENGTH-OVER-256
  HTTP:AUDIT:LENGTH-OVER-512
  HTTP:AUDIT:LENGTH-OVER-1024
  HTTP:AUDIT:LENGTH-OVER-2048
  HTTP:INFO:FACEBOOK
  HTTP:INFO:MS-UPDATE
  HTTP:YAHOO:ATTACHMENT-UPLOAD
  HTTP:YAHOO:ATTACHMENT-DOWNLOAD
  HTTP:INFO:YOUTUBE
  HTTP:INFO:FARK
  HTTP:HOTMAIL:LIVE-ACTIVITY
  HTTP:YAHOO:ACTIVITY
  HTTP:EXT:DOT-PPT
  HTTP:INFO:SPIDER-ROBOT
  HTTP:PROXY:ANON:PHPROXY
  HTTP:UA:WGET
  HTTP:UA:CURL
  HTTP:TUNNEL:ANCHORFREE-CLIENT
  HTTP:PHP:PHPINFO-QUERY
  HTTP:UA:SKIPFISH
  HTTP:STREAM:AAJTAK-STREAM
  HTTP:STREAM:FLV
  HTTP:STREAM:STARTV-STREAM
  HTTP:MISC:APPLE-MAPS-APP
  HTTP:AUDIT:HTTP-VER-1.0
  HTTP:INFO:YOUTUBE-APP
  HTTP:UA:MOBILE
  HTTP:UA:CRAZY-BROWSER
  HTTP:UA:GOOGLEBOT
  HTTP:UA:MSN-BINGBOT
  HTTP:UA:NUTCH
  HTTP:UA:MOREOVER
  HTTP:EK-RED-SIMPLETDS-GO
  HTTP:TUNNEL:PSIPHON-TUNNEL
  FTP:AUDIT:REQ-BINARY-DATA
  FTP:AUDIT:REQ-INVALID-CMD-SEQ
  FTP:AUDIT:REQ-NESTED-REQUEST
  FTP:AUDIT:REQ-UNKNOWN-CMD
  FTP:AUDIT:LOGIN-FAILED
  FTP:USER:ANONYMOUS
  FTP:PASSWORD:COMMON-PASSWD
  FTP:PASSWORD:DEFAULT-USERNM-PW
  FTP:EXT:DOT-PDF
  FTP:FILE:RETR
  FTP:FILE:STOR

Release Information

Command introduced in Junos OS Release 18.3R1.

recursive option introduced in Junos OS and EVO Release 21.3.

footer-navigation