R3166-R3206-HP High-End Firewalls Attack Protection Configuration Guide-6PW101
11
Figure 6 ICMP flood detection configuration page
Do the following to configure ICMP flood detection:
1. In the Attack Prevention Policy section, specify the protection action to be taken upon detection of
an ICMP flood attack. If you do not select the Discard packets when the specified attack is detected
option, the firewall only collects ICMP flood attack statistics.
2. In the ICMP Flood Configuration section, view the configured ICMP flood detection rules, or click
Add to enter the page shown in Figure 7 to configu
re an ICMP flood detection rule.
Figure 7 Add an ICMP flood detection rule
Table 6 ICMP flood detection configuration items
Item Descri
p
tion
Protected Host
Configuration
IP Address
Specify the IP address of the protected host.
Connection Rate
Threshold
Set the maximum ICMP connection rate for the IP address.
Global Configuration
of Security Zone
Connection Rate
Threshold
Set the global maximum ICMP connection rate for each host in
the current security zone.
NOTE:
• In a security zone, you can confi
g
ure multiple protected hosts and one
g
lobal connection rate threshold.
• For a host, the host-specific setting overrides the global setting of the security zone in case conflict
occurs.