All Products
Search
Document Center

Edge Security Acceleration:UpdateDDoSSpec

Last Updated:Sep 04, 2026

Modifies the specifications of a DDoS instance.

Operation description

  • Call PurchaseDDoSInstance to purchase a DDoS instance. A newly purchased DDoS instance can only be associated with a pay-as-you-go plan instance.

  • Call ListDDoSInstances to query the list of DDoS instances.

  • Specification changes are not allowed within 31 days of purchase.

  • You can change specifications once per calendar month (from the 1st to the 31st of each month).

  • After a successful specification change, billing starts immediately on the same day based on the new instance specifications.

Try it now

Try this API in OpenAPI Explorer, no manual signing needed. Successful calls auto-generate SDK code matching your parameters. Download it with built-in credential security for local usage.

Test

RAM authorization

The table below describes the authorization required to call this API. You can define it in a Resource Access Management (RAM) policy. The table's columns are detailed below:

  • Action: The actions can be used in the Action element of RAM permission policy statements to grant permissions to perform the operation.

  • API: The API that you can call to perform the action.

  • Access level: The predefined level of access granted for each API. Valid values: create, list, get, update, and delete.

  • Resource type: The type of the resource that supports authorization to perform the action. It indicates if the action supports resource-level permission. The specified resource must be compatible with the action. Otherwise, the policy will be ineffective.

    • For APIs with resource-level permissions, required resource types are marked with an asterisk (*). Specify the corresponding Alibaba Cloud Resource Name (ARN) in the Resource element of the policy.

    • For APIs without resource-level permissions, it is shown as All Resources. Use an asterisk (*) in the Resource element of the policy.

  • Condition key: The condition keys defined by the service. The key allows for granular control, applying to either actions alone or actions associated with specific resources. In addition to service-specific condition keys, Alibaba Cloud provides a set of common condition keys applicable across all RAM-supported services.

  • Dependent action: The dependent actions required to run the action. To complete the action, the RAM user or the RAM role must have the permissions to perform all dependent actions.

Action

Access level

Resource type

Condition key

Dependent action

esa:UpdateDDoSSpec

create

*All Resource

*

None None

Request parameters

Parameter

Type

Required

Description

Example

InstanceId

string

Yes

The instance ID. You can call the ListDDoSInstances operation to query the list of DDoS instances.

esa-ddos-9tuv*********

DDoSBurstableDomesticProtection

string

Yes

The instance specification for Chinese mainland.

Valid values:

  • cn_300 :

    Chinese mainland with a baseline protection of 30 Gbps.

  • cn_600 :

    Chinese mainland with a baseline protection of 60 Gbps.

  • cn_1000 :

    Chinese mainland with a baseline protection of 100 Gbps.

  • off :

    Anti-DDoS instance service is not enabled for Chinese mainland.

cn_300

DDoSBurstableOverseasProtection

string

Yes

The instance specification for regions outside Chinese mainland.

Valid values:

  • overseas_twice_unlimited :

    Unlimited protection outside Chinese mainland (2 times)

  • overseas_300 :

    Maximum protection of 300 Gbps outside Chinese mainland.

  • overseas_unlimited :

    Unlimited protection outside Chinese mainland (unlimited times)

  • off :

    Anti-DDoS instance service is not enabled for regions outside Chinese mainland.

overseas_300

DDoSBillingMode

string

Yes

The billing method.

Valid values:

  • CleanTraffic :

    clean traffic.

CleanTraffic

Response elements

Element

Type

Description

Example

object

The response structure.

RequestId

string

The request ID.

F61CDR30-E83C-4FDA-BF73-9A94CDD44229

OrderId

string

The order ID.

31223****11

InstanceId

string

The instance ID.

esa-ddos-9tuv*********

Examples

Success response

JSON format

{
  "RequestId": "F61CDR30-E83C-4FDA-BF73-9A94CDD44229",
  "OrderId": "31223****11",
  "InstanceId": "esa-ddos-9tuv*********"
}

Error codes

HTTP status code

Error code

Error message

Description

400 InternalError An internal exception occurred, please try again later. An inner exception was triggered. Please try again later.
400 CheckPlanFailed Invalid plan name or code. Check and try again. Invalid plan name or code. Check and try again.
400 InvalidSiteICP The specified website does not have an ICP filing or the filing information is invalid. Make sure your website is filed and try again. The specified website does not have an ICP filing or the filing information is invalid. Make sure your website is filed and try again.
400 InvalidSiteName Invalid website name. Check and try again. Invalid website name. Check and try again.
400 SYSTEM.NoSpecificCodeFailed Invalid subscription duration. Check and try again. Invalid subscription duration. Check and try again.
400 Order.InstanceHasUnpaidOrder You have an unpaid order. Complete the payment or cancel the order first. You have an unpaid order. Complete the payment or cancel the order first.
400 InvalidInstance The instance ID is missing or invalid. Make sure that the instance ID is valid and try again. The instance ID is missing or invalid. Make sure that the instance ID is valid and try again.
400 InsufficientBalance Your account balance is insufficient. Your account balance is insufficient, please recharge before purchasing.
400 InsufficientAvailableQuota Your account balance is insufficient. Your account is in arrears, please pay the arrears before purchasing.
400 UpdowngradeConfigNoChange Failed to change the configuration because the new configuration you specified is the same as the current one in use. Specify a correct configuration and try again. The configuration for the upgrade or downgrade is not changed.
400 InvalidComponent The order parameters is invalid. The order parameters is invalid.
400 RamAuthFailed The sub-account has no operation permission. The RAM user does not have the required permissions.
400 Instance.UpdateSpecError The security instance can only be changed after 31 days of purchase, and can only be changed once a natural month. The security instance can only be changed after 31 days of purchase, and can only be changed once a natural month.
400 Instance.HasIpaEnableKeepAliveProtection The site associated with this instance has one or more IPA apps with keep-alive-protection enabled. Both domestic and overseas DDoS protection cannot be disabled. The site associated with this instance has one or more IPA apps with keep-alive-protection enabled. Both domestic and overseas DDoS protection cannot be disabled."

See Error Codes for a complete list.

Release notes

See Release Notes for a complete list.