Mitigation is a term employed to design the means and measures in place that reduce the negative effects of a DDoS attack. You need OVH IP Configure firewall Add Rule for Anti DDOS.
Mitigation consists of filtering illegitmate traffic and hoovering it up with the VAC, while letting legitmate packets pass.
The VAC consists of multiple devices, each with a specific function to block one or more types of attack (DDoS, Flood, etc.). Depending on the attack, one or more defense strategies may be put in place on each VAC device.
The signatures analysed are based on traffic thresholds of “packets per second” (pps, Kpps, Mpps, Gpps) or “bits per second” (bps, Kbps, Mbps, Gbps) on certain packet types, such as:
- IP Fragment
- NULL IP
- Private IP
- TCP NULL
- TCP RST
- TCP SYN
- Total Traffic.
Anti-DDoS PRO on OVH
Subscribing to professional use for your server enables access to permanent mitigation (the permanent settings) and configuration of the Firewall Network.
The standard configuration for ip to Protect from DDoS Attack:
Firewall : Enabled
click on the “configure the IP”
Add a Rule:
Priority Action Protocol IP source Options
0 Authorise TCP all
1 Authorise TCP all Fragments
2 Authorise ICMP all
3 Authorise GRE all
4 Authorise TCP all Fragments / syn
5 Authorise UDP all
6 Refuse TCP all Fragments / established