Last Modified: Nov 22, 2021
Affected Product:
See more info
BIG-IP AFM
Fixed In:
12.1.0
Opened: Sep 14, 2015
Severity: 3-Major
In a HA setup, 'TCP Push Flood' vector counter increments in dos stats because of HA heart beats.
TCP push flood stats.
HA setup, firewall DOS enabled.
Any of the following: 1. Add HA vlan (if it is a separate vlan) to the DoS Whitelist. 2. Add HA IPs subnet to the DoS Whitelist if all the HA peers are on the same subnet. 3. Add HA peer IPs to the DoS Whitelist.
Add whitelist to bypass DOS counting.