Specify the threshold rates at which new connections per second (CPS) trigger an
alarm and an action (specified in the DoS Protection policy)
DoS Protection profiles are designed for high-precision targeting and they augment
Zone Protection profiles. A DoS Protection profile specifies the threshold rates at
which new connections per second (CPS) trigger an alarm and an action (specified in
the DoS Protection policy). The DoS Protection profile also specifies the maximum
CPS rate and how long a blocked IP address remains on the Block IP list. You specify
a DoS Protection profile in a DoS Protection security rule, where you specify the
criteria for packets to match the rule, and the security rule determines the devices
to which the profile applies.
Create DoS Protection profiles and security rules to protect critical individual
devices or small groups of devices, especially internet-facing devices such as
web servers and database servers.
You can configure Aggregate and Classified DoS Protection profiles. You can apply an
Aggregate profile, a Classified profile, or one of each type to a DoS Protection
security rule. If you apply both profile types to a rule, your configuration applies
the Aggregate profile first and then applies the Classified profile if needed.
Follow these steps to configure a DoS Protection profile.