DES-7200 Configuration Guide Chapter 12 NFPP Configuration
12-2
Caution
In order to make full use of the NFPP function, you can modify
the rate-limit value of each packet in CPU Protect Policy
according to specified network environment, you can also use
the recommended value displayed after executing the show
cpu-protect summary command.
2. Packet attack detection/Rate-limit
NFPP provides the host-based/port-based attack and rate-limit threshold configuration for the
administrator to set in the specific network flexibly to control the rate of receiving the packets
based on the host/port. With the attack threshold configured, after detecting the attack, the
anti-attack policy implements the attack-warning or the isolation action. For the isolation action,