【问题标题】:Google Cloud Armor谷歌云盔甲
【发布时间】:2021-01-09 08:49:01
【问题描述】:

我想为我的网站创建新的 Cloud Armor 策略以防止托管在 GCP 虚拟机上的 DDOS 攻击。 那么如何防止和配置 tcp、udp flood 和 ICMP。还有哪些 IP 需要加入黑名单。

请给我建议, 谢谢

【问题讨论】:

    标签: google-cloud-armor


    【解决方案1】:

    根据official doucumentation

    Google Cloud Armor 安全政策仅适用于外部 HTTP(S) 负载平衡器后面的后端服务

    Google Cloud Armor 安全政策由基于第 3、4 和 7 层属性过滤流量的规则组成。例如,您可以指定匹配传入请求的 IP 地址、IP 范围、区域代码或请求标头的条件。

    你可以在这里找到详细的解释:

    Configuring Google Cloud Armor security policies

    【讨论】:

      猜你喜欢
      • 2019-03-29
      • 2021-06-18
      • 2022-01-22
      • 2022-09-30
      • 2021-09-14
      • 2021-10-20
      • 2010-09-07
      • 2021-05-12
      • 2020-12-29
      相关资源
      最近更新 更多