- Table of Contents
-
- 04-Policies
- 01-Security policy
- 02-Security policy redundancy analysis
- 03-Security policy hit analysis
- 04-Security policy optimization
- 05-Attack defense
- 06-Risk analysis
- 07-Blacklist
- 08-Connection limit
- 09-uRPF
- 10-IPCAR
- 11-IP reputation
- 12-Domain reputation
- 13-Application audit
- 14-Bandwidth management
- 15-Server connection detection
- 16-Application proxy
- Related Documents
-
Title | Size | Download |
---|---|---|
10-IPCAR | 87.25 KB |
Introduction
This feature limits the number of connections established per second to prevent DDoS attacks from degrading device performance.
The device supports the following types of IPCAR protection:
· Public network protection—Limits the number of connections from the public network to the internal network based on destination IP address.
· Internal network protection—Limits the number of connections from the internal network to the public network based on source IP address.
Configure IPCAR
Configure IPCAR as shown in Figure 1.
Figure 1 IPCAR configuration procedure