ICMP Flood Protection functions identically to UDP Flood Protection, except it monitors for ICMPv4/ICMPv6 Flood Attacks. The only difference is that DNS queries are not allowed to bypass ICMP Flood Protection.
To configure ICMP Flood Protection for IPv4 version, navigate to Network > Firewall > Flood Protection > UDP > ICMP > IPv4 tab.
Enable ICMP Flood Protection – Enables ICMP Flood Protection.
Enable ICMP Flood Protection must be enabled to activate the other ICMP Flood Protection options.
ICMP Flood Attack Blocking Time – After the appliance detects the rate of ICMP packets exceeding the attack threshold for this duration of time, ICMP Flood Protection is activated, and the appliance will begin dropping subsequent ICMP packets. The minimum time is 1 second, the maximum time is 120 seconds, and the default time is 2 seconds.
ICMP Flood Attack Protected Destination List – The destination address object or address group that will be protected from ICMP Flood Attack.
Select Any to apply the Attack Threshold to the sum of ICMP packets passing through the firewall.