All Products
Search
Document Center

Anti-DDoS:Anti-DDoS plans

Last Updated:Mar 19, 2024

Anti-DDoS Proxy (Chinese Mainland) provides Anti-DDoS plans free of charge to users who meet specific requirements. The plans can be used to offset the fees that are generated for burstable protection. This topic describes how to apply for and use Anti-DDoS plans.

Apply for Anti-DDoS plans

If you meet one of the following requirements, you can submit a ticket to contact technical support to apply for an Anti-DDoS plan. Each Alibaba Cloud account can apply for an Anti-DDoS plan only once.

  • This is the first time you purchase an Anti-DDoS Proxy (Chinese Mainland) instance.

  • You have been using Anti-DDoS Proxy for more than three months.

  • You have purchased an Anti-DDoS Proxy (Chinese Mainland) instance on an annual subscription basis.

Note

Only Anti-DDoS Proxy (Chinese Mainland) supports Anti-DDoS plans. If you use Anti-DDoS Proxy (Outside Chinese Mainland), Anti-DDoS plans cannot be used.

Conditions for using Anti-DDoS plans

Anti-DDoS plans can be used to offset only the fees that are generated for burstable protection.

  • If the inbound bandwidth is less than or equal to the basic protection bandwidth, no fees are generated for burstable protection and no Anti-DDoS plans are consumed.

  • If the inbound bandwidth is less than or equal to the basic protection bandwidth plus the protection bandwidth of an Anti-DDoS plan, the plan can be used to offset burstable protection fees of the day.

  • If the inbound bandwidth on a day is greater than the basic protection bandwidth plus the protection bandwidth of an Anti-DDoS plan, the plan cannot be used to offset the burstable protection fees of the day.

Important
  • If an Anti-DDoS plan cannot be used to offset the burstable protection fees that is generated, pay-as-you-go bills are generated based on the actual usage.

  • If the peak inbound bandwidth of multiple DDoS attacks within a day meets the conditions of applying a plan, only one mitigation session of the plan is consumed to offset the burstable protection fees of the day.

Usage notes

  • Anti-DDoS plans do not increase mitigation capabilities. If DDoS attacks occur on a day and the conditions of applying a plan are met, the plan can be used to offset only the burstable protection fees of your Anti-DDoS Proxy (Chinese Mainland) instance on the day. The mitigation capabilities are based on the basic protection bandwidth and burstable protection bandwidth.

  • If you consume all the mitigation sessions of the plan, we recommend that you set the burstable protection bandwidth to the basic protection bandwidth at the earliest opportunity to avoid unexpected burstable protection fees.

    Note

    If the inbound bandwidth exceeds the basic protection bandwidth, blackhole filtering may be triggered and cause adverse impacts on your workloads.

  • An Anti-DDoS plan can be used to offset fees that are generated for burstable protection bandwidth only on or after the day you obtain the plan. However, if the bills for burstable protection bandwidth are generated, the plan cannot be used.

Suggestions on how to adjust the burstable protection bandwidth

We recommend that you manually adjust the burstable protection bandwidth to use an Anti-DDoS plan in a more efficient manner. You can change the maximum bandwidth of burstable protection to the total amount of the basic protection bandwidth plus the protection bandwidth of the plan. The actual bandwidth must be within the supported bandwidth range. For more information, see Modify the burstable protection bandwidth.

Assume that the basic protection bandwidth is 30 Gbit/s.

  • If the protection bandwidth of your plan is 20 Gbit/s, you can set the burstable protection bandwidth to 50 Gbit/s, which is calculated based on the following formula: Basic protection bandwidth (30 Gbit/s) + Protection bandwidth of your plan (20 Gbit/s).

  • If the protection bandwidth of your plan is 300 Gbit/s, the basic protection bandwidth (30 Gbit/s) plus the protection bandwidth of your plan (300 Gbit/s) is 330 Gbit/s, which is greater than the maximum burstable protection bandwidth (300 Gbit/s) that you can set. In this case, you can set the burstable protection bandwidth to 300 Gbit/s.

实际弹性带宽

View the details of an Anti-DDoS plan

An Anti-DDoS plan is automatically applied if DDoS attacks occur and the conditions of applying the plan are met. You can check the details of the plan and usage records in the Anti-DDoS Proxy (Chinese Mainland) console. A plan is effective only within its validity period and if the plan still has remaining mitigation sessions.

  1. Log on to the Anti-DDoS Proxy console.

  2. In the top navigation bar, select Chinese Mainland.

  3. In the left-side navigation pane, choose Assets > Anti-DDoS Plans.

  4. On the Anti-DDoS Plans page, view the details of an Anti-DDoS plan.

    抗D包_cn

    Column

    Description

    Specification

    The protection bandwidth of the Anti-DDoS plan.

    In the preceding figure, the protection bandwidth of the Anti-DDoS plan is 100 Gbit/s. For example, the basic protection bandwidth is 30 Gbit/s.

    • If the inbound bandwidth is less than or equal to 130 Gbit/s, the plan can be used to offset the burstable protection fees of the day. The value 130 Gbit/s is calculated based on the following formula: Basic protection bandwidth (30 Gbit/s) + Protection bandwidth of your plan (100 Gbit/s).

    • If the inbound bandwidth is greater than 130 Gbit/s, the plan cannot be used to offset the burstable protection fees of the day. If burstable protection is triggered, you are charged for burstable protection.

    Expiration Time

    The time when the Anti-DDoS plan expires.

    Status

    The status of the Anti-DDoS plan.

    • Valid: indicates that the Anti-DDoS plan can be used.

    • Exhausted: indicates that the mitigation sessions of the Anti-DDoS plan are used up.

    • Expired: indicates that the Anti-DDoS plan is expired.

    Available Protection

    The number of remaining mitigation sessions of the Anti-DDoS plan.

  5. Optional: Click View Logs in the Actions column to go to the Operation Logs page and view the operation records of the Anti-DDoS plan. For more information, see Query operation logs.

References

For more information about burstable protection bandwidth, see Billing of the burstable protection bandwidth feature.