Help Center/ Anti-DDoS Service/ FAQs/ General FAQs/ What Can I Do If an IP Address Is Blocked?
Updated on 2025-07-14 GMT+08:00

What Can I Do If an IP Address Is Blocked?

Possible Causes

Huawei Cloud provides free basic CNAD service for common users. The protection capability depends on the available network bandwidth in the region where the asset is located. The protection capability in China is 2 Gbit/s to 5 Gbit/s, and that in regions outside China is 500 Mbit/s to 5 Gbit/s. A blackhole will be triggered to block accesses from the Internet within a time range when a cloud server is under volumetric traffic attacks.

  • If the bandwidth (Bit/s) of normal service traffic is greater than the blackhole threshold, you need to increase the asset bandwidth in a timely manner. Otherwise, normal service traffic may be identified as abnormal traffic, causing the asset to be blackholed and service access to be interrupted.
  • If your asset is under a DDoS attack, the attack traffic will also trigger a blackhole, interrupting service access. To ensure that your valuable assets have the maximum blackhole threshold within the available bandwidth of the Huawei Cloud network during a DDoS attack, purchase the Anti-DDoS service.

How Do I Deactivate a Black Hole?

When the access to a cloud server is blocked by Huawei Cloud because attack traffic targeting a cloud server exceeds a certain threshold, follow the instructions described in Table 1 to handle that.

Table 1 Black hole deactivation methods

Anti-DDoS Edition

Deactivation Policy

Deactivation Method

Cloud Native Anti-DDoS Basic (Anti-DDoS)

NOTE:

Anti-DDoS is enabled by default.

  • The blackhole is automatically removed after the traffic enters the blackhole for 24 hours.
  • If the system detects that the attack has not stopped, and attack traffic is still exceeding the configured threshold, the access will be blocked again.

You need to wait until the system deactivates it automatically.

Cloud Native Anti-DDoS Pro

  • The blackhole is automatically removed after the traffic enters the blackhole for 24 hours.
  • If the system detects that the attack has not stopped, and attack traffic is still exceeding the configured threshold, the access will be blocked again.

You need to wait until the system deactivates it automatically.

Advanced Anti-DDoS

The default blackhole duration is 30 minutes.

You need to wait until the system deactivates it automatically.