Traditional Culture Encyclopedia - Traditional festivals - A series of measures have been taken to prevent DDoS, but to no avail? Have you noticed these two points?

A series of measures have been taken to prevent DDoS, but to no avail? Have you noticed these two points?

The reason why it is urgent to guard against DDoS is because DDoS attack is a barbaric network attack, which is very simple, direct and elementary! Cyber attacks are no small matter. A seemingly insignificant attack may cause millions of economic losses and the loss of customers.

For example, DDoS denial of service attacks have caused headaches for many online games and e-commerce industries. DDoS can easily make the website lose its connection, and the server is paralyzed, which has a huge impact, and because of the low attack cost, it has formed a black industrial chain. In the face of common DDoS attacks, you may often encounter the following problems:

The 1. server cannot log in and connect.

First of all, we should learn how to investigate the causes of such problems and see if it is blocked, that is, suffered from DDoS attacks. The reasons why the server can't log in and connect are generally investigated from the following aspects: (1) Check the patency of the physical link; Check the smoothness of ping public network IP; Check the smoothness from the server to the gateway or router; Finally, check the fluency of DNS. If the above phenomenon may be caused by IP being blocked, a screening step to check whether IP is blocked can be added during screening.

What if my application is attacked by DDoS? You can use DDoS to prevent IP. When using, according to the attack traffic data suffered by the service, you can choose the appropriate protection DDoS peak value to ensure that the maximum protection peak value is greater than the attack peak value as much as possible. After access, set the protection strategy according to the business and attack situation.

2. How to set an appropriate threshold for 2.DDoS cleaning?

Users who have used DDoS high-security packages will have questions about the cleaning threshold, such as the difference between DDoS cleaning threshold and DDoS protection ability. The threshold of DDoS cleaning is the threshold to prevent an instance from triggering DDoS cleaning. When the access flow is less than the set threshold, even if the attack is detected, the cleaning operation will not be carried out. DDoS protection ability is the ability to access high-protection instances to resist DDoS attack traffic.

When it comes to the threshold of DDoS protection, it is necessary to say the threshold of CC protection and the peak of CC protection ability. The CC protection threshold is actually the threshold of the number of HTTP/HTTPS requests, which means that the number of HTTP/HTTPS requests counted by the high protection system exceeds set/news/industry/301.html.