Purpose: Configure Anti-DoS profiles to create thresholds for Cloud Edge to limit the number of packets per second that can flood a server.
Location: Policies > SECURITY PROFILES > Security Profiles > Anti-DoS
Configure Cloud Edge to forward packets through Cloud Edge and divide them into TCP SYN, UDP, and ICMP flood protection categories.
TCP SYN
Transmission Control Protocol/Synchronous Transmission
UDP
User Datagram Protocol
ICMP
Internet Control Message Protocol
Cloud Edge supports IPv4 and IPv6 address exceptions if the Cloud Edge gateway is running in Bridge Mode or as a Software Switch deployment.
You must configure IPv4 address exceptions for Routing Mode deployments.
Example of how to specify an address object:
Single IPv4 / IPv6 address: 198.168.1.1 / fd00:1:1111:200::1000
IPv4 / IPv6 addresses range: 198.168.1.1-198.168.1.20 / fd00:1:1111:200::1000-fd00:1:1111:200::1fff
IPv4 / IPv6 CIDR: 198.168.1.1/24 / fd00:1:1111:200::1000/116