source-threshold
Syntax
source-threshold number;
Hierarchy Level
[edit security screen ids-option screen-name tcp syn-flood]
Description
Specify the number of SYN segments that the device can receive per second from a single source IP address (regardless of the destination IP address and port number) before the device begins dropping connection requests from that source.
Options
number
—Number of SYN segments to be received per second
before the device starts dropping connection requests.
Range: 4 through 500,000 per second
Default: 4000 per second
For SRX Series Firewalls the applicable range is 4 through 1,000,000 per second.
Required Privilege Level
security—To view this statement in the configuration.
security-control—To add this statement to the configuration.
Release Information
Statement modified in Junos OS Release 9.2.