After you create a Zone, configure a defense policy specifically for the Zone so that attack traffic can be blocked. When the Zone identifies abnormal traffic or is under attack, you can refer to the defense status information on the Versatile Security Manager (VSM) graphical user interface (GUI) to handle anomalies or attacks.
Choose . On the page that is displayed, you can manage the defense policies of the Zone. For details, see Table 1 and Table 2.
| Action | Description |
|---|---|
Configure defense policies |
Click |
Deploy |
Policies configured for a Zone take effect only after they are deployed on associated devices. Select the check box of
a Zone and click |
Undeploy |
Remove the policy configurations of a Zone from associated devices, but keep the configurations on the ATIC Management center. Select the check box of a Zone and click |
Handle anomalies or attack events |
When a Zone identifies abnormal traffic or is under attack, State is Abnormal or Attacked. Click the state value of the State column of the Zone and perform appropriate operations. For details, see Handling Abnormal Events. |
| Parameter | Description |
|---|---|
Zone |
Indicates the Zone name defined when you create the Zone. For details, see Adding a Zone. |
Type |
Indicates the type of Zone. |
Device Name |
Indicates the detecting or cleaning device that provides anti-DDoS services for the Zone. |
Baseline Learning |
Indicates the state of the Zone-associated devices that perform baseline learning on traffic. Click the state value to configure the baseline learning task or view baseline learning results. For details, see Configuring the Baseline Learning. |
Operation Status |
Indicates the state of Zone traffic.
If Operation Status of the Zone is Abnormal or Attacked, and Defense State is Not defended or Part Defended, click the state value in the State column. You can view the abnormal events and handle them. For details, see Handling Abnormal Events. |
Defense Status |
Indicates the state that the cleaning device processes anomaly or attack traffic for the Zone.
If Operation Status of the Zone is Abnormal or Attacked, and Defense State is Not defended or Part Defended, click the state value in the Operation Status column. You can view the abnormal events and handle them. For details, see Handling Abnormal Events. |
Diversion Status |
Determines whether Zone traffic is diverted to the cleaning device.
On the anti-DDoS network in off-line deployment, when one of the following status occurs, click the corresponding diversion Status to check whether a traffic diversion task is created for the Zone or the traffic diversion task is enabled on the Traffic Diversion Task List tab page. For details, see Configuring BGP Traffic Diversion (ATIC).
|
Deployment Status |
Indicates the state whether the Zone policy is deployed on devices. The value can be Undeployed, Succeeded , Part Deployed, or Failed . If Deployment Status is Failed , click Deploy Failed to view details on policy deployment and undeployment on the Zone-associated devices. If Deployment Status is Part Deployed, click Part Deployed to view the new policies that are not deployed on the Zone-associated devices. |