Updated on 2024-12-24 GMT+08:00

Blocking Traffic From Specified Locations

CNAD allows you to configure a policy to block traffic from outside China. After the policy takes effect, access traffic from outside China will be discarded.

The conditions for a policy to take effect vary according to product editions. For details, see Table 1.

Table 1 Geo-blocking policy effective conditions

Edition

Geo-Blocking Policy Effective Condition

Unlimited Protection Basic Edition

The policy takes effect once it is enabled and an attack is detected.

Unlimited Protection Advanced Edition

The policy takes effect after being enabled.

CNAD 2.0

  • Dedicated EIPs: The policy takes effect after being enabled.
  • Common EIPs: The policy takes effect once it is enabled and an attack is detected.

Limitations and Constraints

Currently, only Locations outside China can be blocked.

Geo-Blocking

  1. Log in to the management console.
  2. Select a region in the upper part of the page, click in the upper left corner of the page, and choose Security & Compliance > Anti-DDoS Service. The Anti-DDoS Service Center page is displayed.
  3. In the navigation pane on the left, choose Cloud Native Anti-DDoS Advanced > Protection Policies. The Protection Policies page is displayed.
  4. Click Create Protection Policy.
  5. In the displayed dialog box, set the policy name, select an instance, and click OK.

    Figure 1 Creating a policy

  6. In the row containing the target policy, click Set Protection Policy in the Operation column.
  7. In the Geo-Blocking configuration area, click Set.

    Figure 2 Geo-blocking settings

  8. In the dialog box that is displayed, select the locations to be blocked.

    Figure 3 Select blocked locations

  9. Click OK. The geo-blocking setting is complete.