LPU Blackhole

When the blackhole type is set to LPU blackhole and a blackhole task is performed on the ATIC, the ATIC sends an NP blocking policy for a specified IP address to the anti-DDoS cleaning device and discards the traffic destined to the IP address from the LPU directly. The local defense system triggers LPU blackhole and cannot perform link protection on the data center. However, in the carrier scenario, the local defense system can withstand bandwidth attacks and reduce the cost of using blackhole services provided by the carrier on the upstream network.

Context

The LPU blackhole policies can be divided into the dynamic blackhole policy and static blackhole policy based on the task generation mode.

Procedure

  1. Configure the notification mode of second-level blackhole event.
    1. Choose Defense > Policy Settings > Global Policy.
    2. Click .
    3. In the Attack Defense Configuration dialog box, select Sending Alert To ATIC for Notification Mode Of Second-Level Blackhole Event.

    4. Click OK.
    5. Click .

Copyright © Huawei Technologies Co., Ltd.