Allow list for Dos Prevention

Omnia
Posts: 57
Ally Member




Hi,
we cannot find Ip allow list in Dos Prevention, is it possible to configura via CLI?
Thanks
0
All Replies
-
Hi @Omnia,
No, it is not possible to cofigure via CLI. Would you like to provide the reason you want to set an allow list?
Zyxel Melen1 -
Hi @Zyxel_Melen,
because we have a false positive during a ftps file trasfer:
we have set sensibility in "low" but we continue to receive drop packet.
0 -
Hi @Omnia,
I apologize for the delayed response.
Edit:
Since USG FLEX H currently does not support "allow list for Dos Prevention", please help have some steps for us to investigate this issue:
- Change the (portscan) TCP Portscan Action to "none", and check if the drop issue still occurs.
- If not, please help to change the action back to "block" and collect the packet on the WAN interface when you are doing an FTP file transfer.
With these actions, we can investigate why DoS Prevention misblocks the traffic.
Zyxel Melen0
Categories
- All Categories
- 417 Beta Program
- 2.5K Nebula
- 161 Nebula Ideas
- 108 Nebula Status and Incidents
- 5.9K Security
- 331 USG FLEX H Series
- 286 Security Ideas
- 1.5K Switch
- 78 Switch Ideas
- 1.2K Wireless
- 42 Wireless Ideas
- 6.6K Consumer Product
- 259 Service & License
- 402 News and Release
- 86 Security Advisories
- 31 Education Center
- 10 [Campaign] Zyxel Network Detective
- 3.8K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 85 About Community
- 80 Security Highlight