Forum Discussion

Tik_BOI's avatar
Tik_BOI
Icon for Nimbostratus rankNimbostratus
Feb 18, 2025

Whitelist Address List in Dos device protection

Hello,

In my Dos device protection, i added a whitelist address list with some ip addresses. 

But i still see these ip addresses as origin attacks in Dos dashboard.

Does anyone have an idea why this behaviour?

Thank you,

 

  • Hello,

     

    Please use the link for whitelisting DOS profiles, you can verify your existing configurations - Detecting and Preventing Network DoS Attacks

    while those IP addresses are technically whitelisted, the traffic patterns from them might still be triggering DoS detection mechanisms based on other factors like excessive request rates, abnormal traffic patterns, or specific application-level behaviors, even though the source IP is considered trusted; essentially, the system is detecting a potential DoS attack even from a whitelisted source due to unusual traffic characteristics. 

    i hope this s only the reason mostly. 

     

    BR
    Aswin

    • Tik_BOI's avatar
      Tik_BOI
      Icon for Nimbostratus rankNimbostratus

      Thank you very much for you detailed answer.