Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

Announcement: Try the Ask AI chatbot for answers to your technical questions about Juniper products and solutions.

close
header-navigation
keyboard_arrow_up
close
keyboard_arrow_left
Junos CLI Reference
Table of Contents Expand all
list Table of Contents

flow-level-control (DDoS Global Flow Detection)

date_range 09-Dec-23

Syntax

content_copy zoom_out_map
flow-level-control flow-control-mode;

Hierarchy Level

content_copy zoom_out_map
[edit system ddos-protection global]

Description

(MX Series routers with only MPCs, T4000 Core Routers with only FPC5s, or EX9200 switches) Specify how traffic in the detected flow is handled globally for all protocol groups and packet types at all flow aggregation levels.

To override the global configuration for a protocol group or packet type, use the flow-level-control statement at the [edit system ddos-protection protocols protocol-group packet-type] hierarchy level to specify the flow control mode at one or more flow aggregation levels.

Options

flow-control-mode

Mode for how traffic in the detected flow is controlled globally.

  • drop—Drop all traffic in flow.

  • keep—Keep all traffic in flow.

  • police—Police the traffic to within its allowed bandwidth.

  • Default: drop

Required Privilege Level

admin—To view this statement in the configuration.

admin-control—To add this statement to the configuration.

Release Information

Statement introduced in Junos OS Release 17.1.

footer-navigation