Scan protection identifies scanner behavior and signatures to block large-scale scans against your website, then blocks or blacklists the attack source to reduce intrusion risk and unwanted traffic.
Configure scan protection rules
-
In the ESA console, select Websites, and in the Actions column of the target website, click .
-
On the website details page, select .
-
On the Scan Protection Rules tab, click Create Rule Set.
-
Enter a Ruleset Name.
-
If requests match...: Set the criteria for incoming requests. These rules apply only to requests that match the specified criteria. Available matching fields are described in Components of a rule expression.
-
Trigger the protection type…: Select the protection type to activate for matching requests.
NoteConfigure at least one of the High-frequency Scanning Blocking or Directory Traversal Blocking rules.
-
-
Then execute...: Action to take on matching requests, as described in WAF.
-
-
Click OK.
Supported editions
|
Item |
Free |
Basic |
Standard |
Advanced |
Enterprise |
|
Number of supported scan protection rules |
|
|
5 |
10 |
20 |