An elastic IP address (EIP) is considered compliant if its Anti-DDoS status is not 'Black Hole Activated'.
Risk level
Default risk level: High.
You can change the risk level as needed.
Detection logic
An EIP is considered compliant if its Anti-DDoS status is not 'Black Hole Activated'.
Rule details
Parameter | Description |
Rule name | Check the Anti-DDoS status of an EIP |
Rule identifier | |
Tag | EIP |
Automatic remediation | Not supported |
Trigger type | Periodic |
Trigger frequency | 24 hours |
Supported resource types | ACS::EIP::EipAddress |
Input parameters | None |
Remediation
To remediate a non-compliant resource detected by this rule, see Thresholds that trigger blackhole filtering in Anti-DDoS Basic.