DDoS configuration - number of messages
Hello all,
virtualSBC, SCZ900GA.
I need to configure a peering type DDoS (no REGISTERs).
What exactly do ' maximum-signal-threshold' and 'untrusted-signal-threshold' mean?
Do they set a number of incoming requests? Or in/out requests? Or requests and responses?
Documentation reads 'incoming messages', but if I configure it that way the point when the EP gets blocked corresponds with much lower traffic. It seams in/out requests and responses are calculated.
I have 7 msgs callflow (Invite, 100, 183, 200, Ack, Bye, 200; all Byes follow Invite direction), acl-window 30secs, max-signal-threshold is 1100, untrusted-threshold is 1500 and it is:
up-to 6 CAPs -> trusted
7 - 8 CAPs - untrusted