ADC

Enhanced NetScaler security against recurring network threats

NetScaler provides enhanced protection against misbehaving and non-compliant network clients. This feature allows administrators to set a threshold for the maximum number of violations from a particular client. Once this threshold is exceeded, further requests from the offending client are blocked, providing improved security for services behind NetScaler. This enhancement is enabled through a new configuration parameter badIpActionThreshold in the NetProfile, and can be activated as needed.

Configure the Threshold setting by using the CLI

  1. Add a new net profile and specify the badIpActionThreshold.

    add netprofile <netprofile_name> -badIpActionThreshold <threshold_value>
    <!--NeedCopy-->
    

    Example:

    add netprofile netprofile_1 -badIpActionThreshold 20
    <!--NeedCopy-->
    
  2. Bind the newly created net profile to a virtual server.

    set lb vserver <vserver_name> -netprofile <netprofile_name>
    <!--NeedCopy-->
    

    Example:

    set lb vserver h2lb -netprofile netprofile_1
    <!--NeedCopy-->
    
Enhanced NetScaler security against recurring network threats