Forum Discussion
Whitelist Address List in Dos device protection
Hello,
In my Dos device protection, i added a whitelist address list with some ip addresses.
But i still see these ip addresses as origin attacks in Dos dashboard.
Does anyone have an idea why this behaviour?
Thank you,
Hello,
Please use the link for whitelisting DOS profiles, you can verify your existing configurations - Detecting and Preventing Network DoS Attacks
while those IP addresses are technically whitelisted, the traffic patterns from them might still be triggering DoS detection mechanisms based on other factors like excessive request rates, abnormal traffic patterns, or specific application-level behaviors, even though the source IP is considered trusted; essentially, the system is detecting a potential DoS attack even from a whitelisted source due to unusual traffic characteristics.
i hope this s only the reason mostly.
BR
Aswin- Tik_BOI
Nimbostratus
Thank you very much for you detailed answer.
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com