Configuration » Components » Flow Filter

The functionality of Wanguard Filter is briefly described in the Choosing a Method of DDoS Mitigation chapter, and also in the Configuration » Components » Packet Filter chapter. Flow Filter receives traffic information directly from a Flow Sensor, unlike Packet Filter which needs to inspect every packet in order to extract traffic information.

To add a Flow Filter, click the [+] button found in the title bar of the Configuration » Components panel. To configure an existing Flow Filter, go to Configuration » Components and click its name.

FLOW_FILTER_CONFIGURATION8.01_png

Every parameter is already documented in the previous chapter: Configuration » Components » Packet Filter .

Enable the Flow Filter by clicking the small play/stop button displayed next to its name in Configuration » Components.

An instance of the Flow Filter is launched when a traffic anomaly triggers the Response action “Detect filtering rules and mitigate the attack with Wanguard Filter”.