Applying a control plane service policy with a rate-limiting feature allows the engineer to match all ICMP traffic and set a threshold for it. Traffic that exceeds this threshold can be dropped, thus mitigating the risk of ICMP-based DoS attacks while allowing legitimate ICMP traffic to pass through. This method ensures that the current ICMP traffic is not affected as long as it does not exceed the configured rate limit12. References := For detailed steps on configuring rate limits and control plane policing on Cisco Nexus 9000 Series Switches, you can refer to the Cisco Nexus 9000 Series NX-OS Security Configuration Guide12. This guide provides comprehensive information on securing your network infrastructure and protecting against various types of attacks, including DoS attacks. It also covers the configuration of security features like rate limits and control plane policies to ensure network stability and security