Allow list for Dos Prevention
Options
Omnia
Posts: 60
Ally Member
Ally Member
Hi,
we cannot find Ip allow list in Dos Prevention, is it possible to configura via CLI?
Thanks
0
All Replies
-
Hi @Omnia,
No, it is not possible to cofigure via CLI. Would you like to provide the reason you want to set an allow list?
Zyxel Melen1 -
Hi @Zyxel_Melen,
because we have a false positive during a ftps file trasfer:
we have set sensibility in "low" but we continue to receive drop packet.
0 -
Hi @Omnia,
I apologize for the delayed response.
Edit:
Since USG FLEX H currently does not support "allow list for Dos Prevention", please help have some steps for us to investigate this issue:
- Change the (portscan) TCP Portscan Action to "none", and check if the drop issue still occurs.
- If not, please help to change the action back to "block" and collect the packet on the WAN interface when you are doing an FTP file transfer.
With these actions, we can investigate why DoS Prevention misblocks the traffic.
Zyxel Melen0
Categories
- All Categories
- 442 Beta Program
- 2.9K Nebula
- 220 Nebula Ideas
- 128 Nebula Status and Incidents
- 6.5K Security
- 606 USG FLEX H Series
- 347 Security Ideas
- 1.7K Switch
- 84 Switch Ideas
- 1.4K Wireless
- 52 Wireless Ideas
- 7K Consumer Product
- 298 Service & License
- 482 News and Release
- 92 Security Advisories
- 31 Education Center
- 10 [Campaign] Zyxel Network Detective
- 4.8K FAQ
- 34 Documents
- 87 About Community
- 105 Security Highlight
Zyxel Employee