简体   繁体   English

未收到 Microsoft Azure DDoS 保护警报

[英]Microsoft Azure DDoS protection alert not recevied

I have implemented Azure DDos with standard(paid) and also setup alert.我已经使用标准(付费)实现了 Azure DDos 并设置了警报。 But I get 45,000 attack on my server and did not received any alert related to it.但是我的服务器受到了 45,000 次攻击,并且没有收到任何与之相关的警报。 Can anyone tell where I have done any mistake or left configuration related to DDos.谁能告诉我在哪里犯了任何错误或留下了与 DDos 相关的配置。 Let me clear what configure I have made so far:-让我清楚我到目前为止所做的配置:-

  • Configure DDos Protection Plan配置DDos 保护计划
  • Turn Standard标准
  • Also configure Diagnostic settings related to DDos on its IP还要在其IP上配置与 DDos 相关的诊断设置
  • Setup alert on Azure Monitor with Sev-1在带有Sev-1Azure 监视器上设置警报

Unlike DDoS Protection Basic , the DDoS Protection Standard supports Metrics & alerts and hence allows user for configuration of alerts for any of the Azure Monitor metrics that DDoS Protection uses and thus Azure DDoS Protection Standard service helps in protection based on telemetry data from Azure Monitor Service. Unlike DDoS Protection Basic , the DDoS Protection Standard supports Metrics & alerts and hence allows user for configuration of alerts for any of the Azure Monitor metrics that DDoS Protection uses and thus Azure DDoS Protection Standard service helps in protection based on telemetry data from Azure Monitor Service .

As part of cofiguration steps, once the DDoS protection plan is created and selected, you may need to create an alert rule in Azure monitor so that notifications are sent if there is a DDoS attack.作为配置步骤的一部分,一旦创建并选择了 DDoS 保护计划,您可能需要在 Azure 监视器中创建警报规则,以便在发生 DDoS 攻击时发送通知。

For receiving email alerts, you need to configure an email alert for the preferred metric using “Click to add an alert”.要接收 email 警报,您需要使用“单击以添加警报”为首选指标配置 email 警报。 Here, the metric of interest is “Under DDoS attack or not”.在这里,感兴趣的指标是“是否受到 DDoS 攻击”。 Set the Metric for “Under DDoS attack or not” and alert logic “Condition” to “Greater than” zero (0) and you will receive alert email while on attack.将“是否受到 DDoS 攻击”的指标和警报逻辑“条件”设置为“大于”零 (0),您将在受到攻击时收到警报 email。 Also, you need to ensure filling in appropriate threshold values, evaluation details as per your alert requirement for getting the alerts coupled with filling in email details in action group.此外,您需要确保根据您的警报要求填写适当的阈值、评估详细信息以获取警报,并在操作组中填写 email 详细信息。

声明:本站的技术帖子网页,遵循CC BY-SA 4.0协议,如果您需要转载,请注明本站网址或者原文地址。任何问题请咨询:yoyou2525@163.com.

 
粤ICP备18138465号  © 2020-2024 STACKOOM.COM