Attack defense functions of the FW help large enterprises and data centers defend against common DDoS attacks.
Servers, such as mail servers and web servers on the networks of enterprises and data centers are vulnerable to network attacks. Heavy traffic DDoS attacks, such as SYN flood, UDP flood, ICMP flood, HTTP flood, HTTPS flood, DNS flood, and SIP flood attacks are the most common. These attacks bring network congestion, affect service availability, and even cause server crashes.
The FW deployed at the network egress defends against common DDoS attacks and single-packet attacks. Figure 1 shows the application scenario of the FW for attack defense.
Deploy the FW on the intranet egress and enable attack defense, so that the FW can forward normal traffic and block attacks.