Configuration of USG6000 series interworking with the ATIC on the web UI

0

The USG6000 series can be configured on the web UI to interwork with the ATIC.
1. Choose Policy > Security Protection > Attack Defense > Anti-DDoS.
2. Select the ATIC Interworking check box and enter the IP address of the ATIC server.
After the USG6000 is configured to interwork with the ATIC server, it can send traffic anomaly logs to the ATIC server.

Other related questions:
Configuration of USG6000 series interworking with the ATIC on the CLI
The USG6000 series can be configured on the CLI to interwork with the ATIC. 1. Run the info-center atic ip-address command to enable the interworking with the ATIC and specify the IP address of the ATIC server. 2. Run the display info-center atic command to check whether the USG6000 is enabled to interwork with the ATIC and the ATIC server's IP address. After the USG6000 is configured to interwork with the ATIC server, it can send traffic anomaly logs to the ATIC server.

Configuration of traffic mirroring on the web UI for the USG6000 series
The USG6000 series does not support traffic mirroring.

Configuring DNS proxy through the web UI of the USG6000 series
The USG6000 series can serve as the DNS proxy to forward DNS request and reply packets between the DNS client and DNS server. Specify the DNS server address through the web UI so that the device can serve as the DNS proxy to send domain name resolution requests to the DNS server. 1. Choose Network > DNS > DNS. 2. Click Add in DNS Server List. 3. Set the IP address of the DNS server. If you do not select the external network interface, the configured DNS server address is the global address. Enter the IPv4 or IPv6 address of the DNS server in the DNS Server Address text box. Click OK. If you select a specific external network interface, the configured DNS server address is the address bound with the interface and applies only to this interface. If the operation succeeds, the new configuration whose Obtaining Mode is Manual is displayed in DNS Server List. Repeat the preceding operations to add the IPv4 or IPv6 addresses of multiple DNS servers. 4. Optional: In Configure DNS Query Packets's Source Address, set the Source Interface or Source Address. 5. Click Apply .

Configuration of IP sweep attack defense for the USG6000 series on the web UI
You can configure port scan attack defense for the USG6000 series on the web UI. 1. Choose Policy > Security Protection > Attack Defense. 2. Click the Single-Packet Attack tab. 3. Select the IP Sweep check box to enable the attack defense function. 4. Set the maximum scanning rate and blacklist aging time. If you enable IP sweep attack defense, enable the blacklist function as well to ensure that the device discards blacklisted packets.

Method for configuring remote login to the web UI of the USG6000 series
The management interface of the firewall has the web UI login function enabled by default.

If you have more questions, you can seek help from following ways:
To iKnow To Live Chat
Scroll to top