The outgoing and incoming paths of the DNS request and reply packets must be the same. Otherwise, the resolution success ratio stays zero all the time.
You must run the anti-ddos server-flow-statistic enable command on the inbound interface to enable the upstream traffic analysis function.
The successful resolution ratio is the ratio of the rate of responses from the DNS server to the rate of requests for DNS services. When the DNS server is not attacked, observe and record the normal value of the successful resolution ratio. If you find that the successful resolution ratio is strikingly lower than the normal value, capture packets and check whether the DNS server is being attacked.
| Parameter | Description |
|---|---|
| Device | Select a device from the drop-down
list. Total-Cleaning and Total-Detecting are described as follows:
|
| Zone | Click ,
select a Zone on the Zone page that is displayed,
and then click OK. |
| IP address | Enter the destination IP address. Both IPv4 and IPv6 addresses are applicable. DNS traffic destined for the IP address is queried. |
| Time | Click to select
the start time and end time of statistics. Or you can change the time
values in corresponding text boxes.The end time should be later than the start time and the interval cannot be longer than one year.
|
If the Device is set to Total-Cleaning and the Zone to Total, the success resolution ratio within a period of time is displayed in Figure 1.
The success resolution ratio that meets query conditions is displayed.
to open or
save the query results as PDF files. A maximum of 10,000 entries can
be displayed.
to open or
save the query results as EXCEL files. A maximum of 10,000 entries
can be displayed.
to open or
save the query results as CSV files. All data except figures can be
displayed.
to enter
a recipient mail address and select an attachment format. Then click OK.