Real-time statistics about traffic destined to a specified IP address is collected for comparison with the threshold every second. When the traffic of a specified IP address exceeds the blackhole threshold, the corresponding blackhole action is triggered.
Procedure
- Configure the notification mode of second-level blackhole event.
- Set the blackhole mode of the Zone.
- Enable the second-level blackhole.
- Choose Defense > Policy Settings > Zone.
- Click
of the Zone. - In the Defense Policy dialog box, configure a blackhole policy. Table 1 lists related parameters.
Table 1 Blackhole parameter configurationParameter
|
Description
|
Second-Level Blackhole
|
Select Enabled.
|
Threshold (Mbit/s)
|
Set the blackhole threshold.
When the traffic exceeds the value of Threshold, enable the corresponding blackhole type for defense.
|
Type
|
Set the blackhole type to LPU blackhole.
|
- Click OK.
Copyright © Huawei Technologies Co., Ltd.