I want to create new Cloud Armor policy for my website to prevent DDOS attack, which is hosted on GCP VM. So how do I prevent & configure from tcp , udp flood & ICMP. Also what are the IP's to put in to blacklist.
Please suggest me, Thanks
I want to create new Cloud Armor policy for my website to prevent DDOS attack, which is hosted on GCP VM. So how do I prevent & configure from tcp , udp flood & ICMP. Also what are the IP's to put in to blacklist.
Please suggest me, Thanks
@Vittal
Regarding the last part of your question ( as the first part already answered ): "Also what are the IP's to put on to blacklist."
What to block is absolutely based on your business. But if your project is already a part of the "Adaptive Protection Plan", then you can use GCP Threat Intelligence PreConfigured rules like :
You can find more of these thread detection rules from the below article: https://cloud.google.com/armor/docs/threat-intelligence#configure-nti
Thanks Manoj
According to the official doucumentation
You can find a detailed explanation here:
Configuring Google Cloud Armor security policies