show security idp attack attack-list
Syntax
show security idp attack attack-list attack-group (custom-group | dynamic-group | predefined-group)attack-group-name
(recursive)
Description
Display list of all attacks present in the attack group specified.
You can view the attacks that are available in an attack group (predefined, dynamic, and custom attack groups). The attack option has a sub option named attack list that allows you to view attacks in an attack group. The attack list option accommodates three new options (custom, dynamic, and predefined). You can select any of these groups and provide a valid group name to see the list of attacks that belong to that group.
Starting in Junos OS Release 18.3R1, to which an attack belongs.
Options
custom-group custom-group
—Custom group name.dynamic-group dynamic-group
—Dynamic group name.predefined-group predefined-group
—Predefined group name.recursive
—Recursively search through nested attack-groups.
Required Privilege Level
view
Sample Output
show security idp attack attack-list predefined-group FTP
user@host> show security idp attack attack-list predefined-group FTP Processing your request, results will show up shortly FTP:AUDIT:REP-BINARY-DATA FTP:AUDIT:REP-INVALID-REPLY FTP:AUDIT:REP-NESTED-REPLY FTP:MS-FTP:STAT-GLOB FTP:WS-FTP:CPWD FTP:OVERFLOW:PATH-LINUX-X86-3 FTP:OVERFLOW:K4FTP-OF1
show security idp attack attack-list predefined-group
Check attack list against each group one at a time.user@host> show security idp attack attack-list predefined-group Recommended-CTS-1-Year-Old Processing your request, results will show up shortly! Please use show security idp attack attack-list predefined-group command on each group listed below to further display attacks Recommended-CTS-Critical-1-Year-Old Recommended-CTS-Major-1-Year-Old Recommended-CTS-Minor-1-Year-Old
show security idp attack attack-list predefined-group idpengine
user@host> show security idp attack attack-list predefined-group idpengine Processing your request, results will show up shortly! Please use show security idp attack attack-list predefined-group/dynamic-group command if there are any nested attack-groups listed below to further display attacks RULEBASE IPS ATTACKS HTTP:AUDIT:REQ-LONG-UTF8CODE HTTP:CISCO:VOIP:STREAM-ID-REQ HTTP:BROWSER:ICQ HTTP:INFO-LEAK:SNOOP-DISCLOSURE HTTP:CGI:NULL-ENCODING HTTP:INFO:MWS-SEARCH-OF1 HTTP:INFO:TMICRO-PROXY-REQ HTTP:AUDIT:URL HTTP:TOMCAT:REAL-PATH-REQ HTTP:TOMCAT:JSP-BUFFER HTTP:TOMCAT:JSP-COMMENTS HTTP:TOMCAT:JSP-PAGE HTTP:TOMCAT:JSP-DEC-INT-OF HTTP:TOMCAT:SOURCE-MAL-REQ HTTP:REQERR:BIN-DATA-ACC-ENC HTTP:TUNNEL:TELNET HTTP:TUNNEL:CHAT-YIM HTTP:TUNNEL:CHAT-AOL-IM HTTP:UNIX-CMD:UNIX-CMD-A-L HTTP:UNIX-CMD:UNIX-CMD-M-Z HTTP:TUNNEL:ALTNET-OVER-HTTP HTTP:TUNNEL:PROXY HTTP:MISC:MOODLOGIC-CLIENT HTTP:STREAM:QUICKTIME-CLIENT HTTP:TUNNEL:CHAT-MSN-IM HTTP:AUDIT:FW1-SCHEME-OF HTTP:HOTMAIL:FILE-DOWNLOAD HTTP:HOTMAIL:ZIP-DOWNLOAD HTTP:INFO:HTTPPOST-GETSTYLE HTTP:EXT:DOT-CHM HTTP:INFO-LEAK:HTTP-SHARE-ENUM HTTP:3COM:ADMIN-LOGOUT HTTP:PROXY:HTTP-PROXY-GET HTTP:HOTMAIL:FILE-UPLOAD HTTP:EXT:DOT-RAT HTTP:GMAIL:FILE-UPLOAD HTTP:PHP:BZOPEN-OF HTTP:COLDFUSION:CF-CLASS-DWLD HTTP:AUDIT:ROBOTS.TXT HTTP:STREAM:GOOGLE-VIDEO HTTP:STREAM:ITUNES-USERAGENT HTTP:INFO-LEAK:CC-CLEAR-VAR HTTP:IIS:ENCODING:UNICODE HTTP:DOMINO:INFO-LEAK HTTP:STREAM:YOUTUBE-REQ HTTP:PASSWD:COMMON HTTP:PROXY:LIST:PUBWEBPROXIES HTTP:PROXY:ANON:PROXY-2 HTTP:PROXY:LIST:PROXYFIND HTTP:PROXY:ANON:CGIPROXY HTTP:EXT:DOT-VML HTTP:EXT:DOT-RPT HTTP:PROXY:ANON:CONCEAL-WS HTTP:PROXY:WPAD-CONNECTION HTTP:PROXY:CAW-URI-RES HTTP:XDOMAINXML HTTP:INFO-LEAK:SSN-CLEARTEXT HTTP:AUDIT:LENGTH-OVER-256 HTTP:AUDIT:LENGTH-OVER-512 HTTP:AUDIT:LENGTH-OVER-1024 HTTP:AUDIT:LENGTH-OVER-2048 HTTP:INFO:FACEBOOK HTTP:INFO:MS-UPDATE HTTP:YAHOO:ATTACHMENT-UPLOAD HTTP:YAHOO:ATTACHMENT-DOWNLOAD HTTP:INFO:YOUTUBE HTTP:INFO:FARK HTTP:HOTMAIL:LIVE-ACTIVITY HTTP:YAHOO:ACTIVITY HTTP:EXT:DOT-PPT HTTP:INFO:SPIDER-ROBOT HTTP:PROXY:ANON:PHPROXY HTTP:UA:WGET HTTP:UA:CURL HTTP:TUNNEL:ANCHORFREE-CLIENT HTTP:PHP:PHPINFO-QUERY HTTP:UA:SKIPFISH HTTP:STREAM:AAJTAK-STREAM HTTP:STREAM:FLV HTTP:STREAM:STARTV-STREAM HTTP:MISC:APPLE-MAPS-APP HTTP:AUDIT:HTTP-VER-1.0 HTTP:INFO:YOUTUBE-APP HTTP:UA:MOBILE HTTP:UA:CRAZY-BROWSER HTTP:UA:GOOGLEBOT HTTP:UA:MSN-BINGBOT HTTP:UA:NUTCH HTTP:UA:MOREOVER HTTP:EK-RED-SIMPLETDS-GO HTTP:TUNNEL:PSIPHON-TUNNEL FTP:AUDIT:REQ-BINARY-DATA FTP:AUDIT:REQ-INVALID-CMD-SEQ FTP:AUDIT:REQ-NESTED-REQUEST FTP:AUDIT:REQ-UNKNOWN-CMD FTP:AUDIT:LOGIN-FAILED FTP:USER:ANONYMOUS FTP:PASSWORD:COMMON-PASSWD FTP:PASSWORD:DEFAULT-USERNM-PW FTP:EXT:DOT-PDF FTP:FILE:RETR FTP:FILE:STOR
Release Information
Command introduced in Junos OS Release 18.3R1.
recursive
option introduced in Junos OS and EVO Release 21.3.