/
General DDoS

General DDoS

The following table lists the auto rules that are used to mitigate general DDoS attacks on your advanced appliance.

Rule ID

Rule Type

Rule NameDescription

Enable/Disable Condition

ParametersComments
110000100Auto

EARLY DROP DoS packets with same source and destination IP

This rule drops any IP packets that contain the same source and destination IP address.

Always enabled.

Events per second (default = 1)


110000200Auto

EARLY DROP DoS UDP packets with same source and destination IP

This rule drops UDP packets that contain the same source and destination IP address.

Always enabled.

Events per second (default = 1)


110000300Auto

EARLY DROP DoS TCP packets with same source and destination IP

This rule drops TCP packets that contain the same source and destination IP address.

Always enabled.

Events per second (default = 1)


130400300Auto

DROP IPv6 destination loopback address spoofing

This rule blocks any IP packets that attempt to forge the IPv6 destination loopback address.

Always enabled.

Events per second (default = 1)


130400400Auto

DROP IPv6 source loopback address spoofing

This rule blocks any IP packets that attempt to forge the IPv6 source loopback address.

Always enabled.

Events per second (default = 1)