Symptoms
The DoS visibility screens (Monitoring >> DASHBOARDS >> DDOS >> Protection Summary), and DDoS attack events, might display DNS and Network protocol DoS attacks with the incorrect protection mode.
Impact
Network or DNS DoS attacks, detected by a DoS profile with detect-only or learn-only protection, display a protection mode for the attack as Mitigating instead of the configured Monitoring status. This does not affect the reported traffic data found in the DoS visibility dimensions and charts.
Conditions
An attacked object assigned to a DoS profile with either DNS or Network security protocols that are configured to have detect-only or learn-only states for DoS attacks.