Configuring dynamic filtering rules, Configuring dynamic filtering rules -18 – H3C Technologies H3C SecBlade IPS Cards User Manual
Page 175
17-18
Item
Description
Add to
Set the priority of the static filtering rule:
z
Top of all rules: It means the static filtering rule has the highest priority among
rules applied in the same direction on the segment.
z
Bottom of all rules: It means the static filtering rule has the lowest priority among
rules applied in the same direction on the segment.
DDoS Protection Configuration Task List
.
Configuring Dynamic Filtering Rules
Select DDoS > Dynamic Filtering Rules from the navigation tree to enter the dynamic filtering rule
management page shown in
. Select a policy application or input a detection rule ID and
click Query to display qualified dynamic filtering rules.
Figure 17-16 Dynamic filtering rule management
Dynamic filtering rules cannot be deleted. You can modify the status of a dynamic filtering rule by
selecting the checkbox before it and then clicking Enable Selected or Disabled Selected at the bottom
of the page.
describes the title items on the dynamic filtering rule list.
Table 17-13 Description of title items on the dynamic filtering rule list
Item
Description
Detection Rule ID
ID of the dynamic filtering rule
Src IP
Source IP address of the attack packets for which the dynamic filtering rule was
generated
Dest IP
Destination IP address of the attack packets for which the dynamic filtering rule was
generated
Protocol
Protocol matched by a dynamic filtering rule
Action Set
Action set of a dynamic filtering rule
Current Rate (pps)
Current rate of the traffic matching the dynamic filtering rule
Average Rate (pps)
Average rate of the traffic matching the dynamic filtering rule
Packet Count
Total number of packets matching the dynamic filtering rule
Status
Whether the dynamic filtering rule is enabled
Added At
Time when the dynamic filtering rule was generated
Aging Time (seconds)
Aging time of the dynamic filtering rule