Forum Discussion
Can F5 be in Bridge Mode or a L2 DDOS to protect from L3-L4 DDOS attack
- Apr 04, 2023
T0nyP This seems like what you are looking for but not 100%.
You mean vlangroup or vwire ? rSeries with the latest 1.3.x software now supports vwire https://clouddocs.f5.com/f5os/F5OS-A/v1.3.0/F5OS-A-1.3.0-virtual-wire-support-cBIP-15.1.8.html and I have done AFM DOS on vwire (not on rSeries but the same should be true).
As you may not have self-ip things like tcp cookies (afm AFM TCP Half Open vector) may not work in vWire but dropping tcp sync fload attack will work, so there are some small limitations to keep in mind.
- T0nyPApr 11, 2023Cirrus
Highly appreciate your guidance and thanks much for informing me about vWire feature for L2 DDOS Setup.
Additonal inquiry only.
Do we still need to setup a FW policy? And in what context do you recommend to apply the FW policy?
Thanks in advance.
- Nikoolayy1Apr 11, 2023MVP
I can't tell you if you need AFM policy as this is something that you need to be aware of as admin of the network environment if you need not only DOS protection but also security rules.
The AFM policy is usually global for such deployments but if you do not have good knowedge in AFM and rSeries better involve F5 PS as you are risking to much as the Devcentral community that F5 professionals are helping each other for some basic or complex questions can't replace training or a PS consultant.
- T0nyPApr 11, 2023Cirrus
Thanks for this clarification and reply. Totally agree on this.
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com