ip tcp zero-flags

Drops TCP control packets received with all flags set to zero.
Syntax
ip tcp zero-flags
no ip tcp zero-flags
Command Default

By default, the packets are not dropped.

Modes

Global configuration mode

Usage Guidelines

This command is supported for ICX 8100 and ICX 8200 devices only.

The no form of the command returns the ICX device to the default setting.

Examples

The following example configures the ICX device to drop all TCP packets received with all flags set to zero, which could signal a DDOS attack.

device# configure terminal
device(config)# ip tcp zero-flags
History
Release version Command history
10.0.00 This command was introduced.