There are two modes for the blackhole triggered within seconds: Automatic and Third-party:
If Automatic is selected, after detecting that the traffic of a destination IP address exceeds the blackhole threshold, the anti-DDoS device immediately reports a blackhole alarm to the ATIC. After receiving the alarm, the ATIC delivers a blackhole policy to the anti-DDoS device based on the configured blackhole type.
If Third-party is selected, after detecting that the traffic of a destination IP address exceeds the blackhole threshold, the anti-DDoS device sends a syslog to the third-party device, and the third-party device performs the blackhole operation.