Allow list for Dos Prevention
Options
Omnia
Posts: 60
Ally Member
Ally Member
Hi,
we cannot find Ip allow list in Dos Prevention, is it possible to configura via CLI?
Thanks
0
All Replies
-
Hi @Omnia,
No, it is not possible to cofigure via CLI. Would you like to provide the reason you want to set an allow list?
Zyxel Melen1 -
Hi @Zyxel_Melen,
because we have a false positive during a ftps file trasfer:
we have set sensibility in "low" but we continue to receive drop packet.
0 -
Hi @Omnia,
I apologize for the delayed response.
Edit:
Since USG FLEX H currently does not support "allow list for Dos Prevention", please help have some steps for us to investigate this issue:
- Change the (portscan) TCP Portscan Action to "none", and check if the drop issue still occurs.
- If not, please help to change the action back to "block" and collect the packet on the WAN interface when you are doing an FTP file transfer.
With these actions, we can investigate why DoS Prevention misblocks the traffic.
Zyxel Melen0
Categories
- All Categories
- 442 Beta Program
- 2.9K Nebula
- 212 Nebula Ideas
- 127 Nebula Status and Incidents
- 6.4K Security
- 548 USG FLEX H Series
- 341 Security Ideas
- 1.7K Switch
- 84 Switch Ideas
- 1.3K Wireless
- 52 Wireless Ideas
- 6.9K Consumer Product
- 295 Service & License
- 468 News and Release
- 90 Security Advisories
- 31 Education Center
- 10 [Campaign] Zyxel Network Detective
- 4.7K FAQ
- 34 Documents
- 87 About Community
- 102 Security Highlight
Zyxel Employee