You are on page 1of 2

 

Lab 3
Scenario: mitigation with action

Overview

Description
This lab introduces you to the concept of protection level of Pravail APS
and IP Location mitigation.

Objectives
After completing this lab, you will be able to do the following:
• Change protection level of Pravail APS appliance;
• Perform IP Location based mitigation.

Equipment/Tools
The following equipment is required to complete this lab:

• web browser
When accessing training labs, you will be prompted for Training Portal
Authentication. Use following credentials:

• Login: student54
• Password: 43xXBAJD89

Estimated Completion Time


• The estimated completion time for this lab is 15 minutes.

Student 54 L3-1
Mitigation with action on Pravail APS
Lab 3

IP Location based mitigation

1. Ask your instructor to start AIF Medium attack

2. Navigate to View Protection Group page of your web server

3. Switch timeframe to “-5m” Note that there is anomalous levels of traffic


coming from Iran

4. Blacklist Iran for this Protection Group

5. Check if the victim is now available at


https://victim-pod54.training.arbor.net/

Protection level change


Since the victim is still not available, next course of action would be to
change the protection level.

1. Change appliance Protection Level to Medium


2. After a minute check the victim to see if it is now available:
https://victim-pod54.training.arbor.net/
3. Navigate to View Protection Group page corresponding to your Web
Server
4. Check attack categories to see attack vectors

This completes the lab exercise. Please let instructor know that you’ve
finished the lab and the attack should be now stopped. Once attack
is stopped, switch Pravail APS back to Low Protection Level.

L3-2 Student 54 Pravail APS 5.6

You might also like