All Products
Search
Document Center

Cloud Config:Check the Anti-DDoS status of an EIP

Last Updated:Oct 20, 2025

An elastic IP address (EIP) is considered compliant if its Anti-DDoS status is not 'Black Hole Activated'.

Risk level

Default risk level: High.

You can change the risk level as needed.

Detection logic

  • An EIP is considered compliant if its Anti-DDoS status is not 'Black Hole Activated'.

Rule details

Parameter

Description

Rule name

Check the Anti-DDoS status of an EIP

Rule identifier

eip-ddos-status-check

Tag

EIP

Automatic remediation

Not supported

Trigger type

Periodic

Trigger frequency

24 hours

Supported resource types

ACS::EIP::EipAddress

Input parameters

None

Remediation

To remediate a non-compliant resource detected by this rule, see Thresholds that trigger blackhole filtering in Anti-DDoS Basic.