Context
The ATIC alarm policy is implemented based on the traffic log statistics about an anti-DDoS device within the interval of 64 seconds. When the statistics on traffic destined to a Zone reaches the Critical level, the corresponding action is triggered. The delay for automatically executing the blackhole policy is 70 seconds.
Procedure
- Configure the notification mode of second-level blackhole event.
- Set the blackhole mode of the Zone.
- Configure the alarm action.
- Choose Defense > Policy Settings > Zone.
- Click
. - In the Alarm Policy dialog box, set Action to Enable blackhole in the Critical area. Table 1 lists related parameters.
Table 1 ActionParameter
|
Description
|
Enable blackhole
|
If Enable blackhole is selected in the Critical area and the value of a parameter exceeds the threshold, this function is enabled.
|
- Click OK. The message "Succeeded in configuring the alarm severity rule" is displayed.
Copyright © Huawei Technologies Co., Ltd.