[j-nsp] DDOS_PROTOCOL_VIOLATION_SET: Protocol Reject:aggregate

Chuck Anderson cra at WPI.EDU
Thu Dec 11 17:00:13 EST 2014


On Wed, Dec 10, 2014 at 05:16:25PM -0500, Brendan Mannella wrote:
> Just wondering if anyone has ever seen these DDOS messages before and
> what i should be looking at to resolve.
> 
> Dec 10 11:10:24  re0.edge2 jddosd[2710]:
> DDOS_PROTOCOL_VIOLATION_CLEAR: Protocol Reject:aggregate has returned
> to normal. Violated at fpc 1 for 931 times, from 2014-12-10 11:05:23
> EST to 2014-12-10 11:05:23 EST

What version of Junos?  I notice a lot fewer of these on 13.3 than I
did on 11.4.  In my case, I believe most of them were caused by
unknown DHCP packet types.


More information about the juniper-nsp mailing list