Help Center/ Anti-DDoS Service/ FAQs/ CNAD Basic (Anti-DDoS) FAQs/ About Basic Functions/ How Do I Check Whether the Inbound Traffics Are Routed Through Anti-DDoS Devices?
Updated on 2024-07-03 GMT+08:00

How Do I Check Whether the Inbound Traffics Are Routed Through Anti-DDoS Devices?

Anti-DDoS provides anti-DDoS only for HUAWEI CLOUD EIPs. Anti-DDoS devices are deployed at the egresses of data centers.

Figure 1 Network topology

Anti-DDoS only protects inbound traffics from external network. Huawei Cloud traffic does not go through Anti-DDoS.

  • If you access the EIP from an external network, the inbound traffics are routed through the public network routes. On the VM of the EIP, you can check whether traffic is routed from the public network. If so, the inbound traffic is filtered through Anti-DDoS devices.
    If inbound traffics are routed through Anti-DDoS devices, the following information is displayed when the EIP is threatened by DDoS attacks:
    • Traffic cleaning records exist on the Anti-DDoS console.
    • An alarm notification is sent by SMS or Email.
  • If you access the EIP from the intranet, the inbound traffic is not routed through public network routes and Anti-DDoS devices.

    For example, if you apply for two EIPs in two different regions of Huawei Cloud, the access traffics between the two EIPs will not be routed through Anti-DDoS.