Last Modified: Apr 28, 2025
Affected Product(s):
BIG-IP AFM
Fixed In:
12.1.0
Opened: Sep 14, 2015 Severity: 3-Major
In a HA setup, 'TCP Push Flood' vector counter increments in dos stats because of HA heart beats.
TCP push flood stats.
HA setup, firewall DOS enabled.
Any of the following: 1. Add HA vlan (if it is a separate vlan) to the DoS Whitelist. 2. Add HA IPs subnet to the DoS Whitelist if all the HA peers are on the same subnet. 3. Add HA peer IPs to the DoS Whitelist.
Add whitelist to bypass DOS counting.