{"id":7791,"date":"2026-04-20T09:41:42","date_gmt":"2026-04-20T07:41:42","guid":{"rendered":"https:\/\/mybox.com\/help\/?post_type=manual_kb&#038;p=7791"},"modified":"2026-04-20T09:41:44","modified_gmt":"2026-04-20T07:41:44","slug":"recomandari-de-configurare-cloudflare-pentru-atacuri-ddos","status":"publish","type":"manual_kb","link":"https:\/\/mybox.com\/help\/ro\/knowledgebase\/cloudflare-configuration-recommendations-for-ddos-attacks\/","title":{"rendered":"Recomand\u0103ri de configurare Cloudflare pentru atacurile DDoS"},"content":{"rendered":"<div class=\"translation-block translation-block-merged\">\n<p class=\"wp-block-paragraph\" id=\"p-rc_8ca563be5044dd06-209\">The DDoS landscape has shifted from &#8220;simple floods&#8221; to <strong>high-velocity AI-driven strikes<\/strong>. Large-scale botnets (such as the <em>Aisuru<\/em> network) now launch hyper-volumetric attacks reaching tens of terabits per second, making human response times obsolete.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">On your <strong>mybox<\/strong> site, a standard &#8220;default&#8221; configuration is no longer enough. You need to leverage Cloudflare\u2019s <strong>Autonomous Defense<\/strong> systems to maintain uptime.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><\/p>\n\n\n\n<div id=\"ez-toc-container\" class=\"ez-toc-v2_0_86 ez-toc-wrap-left counter-hierarchy ez-toc-counter ez-toc-custom ez-toc-container-direction\">\n<div class=\"ez-toc-title-container\">\n<p class=\"ez-toc-title\" style=\"cursor:inherit\">Table of Contents<\/p>\n<span class=\"ez-toc-title-toggle\"><\/span><\/div>\n<nav><ul class='ez-toc-list ez-toc-list-level-1' ><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-1\" href=\"https:\/\/mybox.com\/help\/ro\/knowledgebase\/cloudflare-configuration-recommendations-for-ddos-attacks\/#Critical_2026_DDoS_Configuration_Checklist\" >Critical 2026 DDoS Configuration Checklist<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-2\" href=\"https:\/\/mybox.com\/help\/ro\/knowledgebase\/cloudflare-configuration-recommendations-for-ddos-attacks\/#Recommended_2026_Security_Profile\" >Recommended 2026 Security Profile<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-3\" href=\"https:\/\/mybox.com\/help\/ro\/knowledgebase\/cloudflare-configuration-recommendations-for-ddos-attacks\/#Monitoring_and_Response\" >Monitoring and Response<\/a><\/li><\/ul><\/nav><\/div>\n<h3 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"Critical_2026_DDoS_Configuration_Checklist\"><\/span><strong>Critical 2026 DDoS Configuration Checklist<\/strong><span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n\n<h4 class=\"wp-block-heading\"><strong>1. Immediate Action: &#8220;I&#8217;m Under Attack&#8221; Mode<\/strong><\/h4>\n\n\n\n<\/div>\n\n<div id=\"mybox-861485340\" class=\"mybox-content mybox-entity-placement\"><div class=\"early-access-banner-inpost\">\r\n  <div class=\"banner-left-inpost\">\r\n    <div class=\"icon-box-inpost\">\r\n      <img decoding=\"async\" src=\"https:\/\/mybox.com\/help\/wp-content\/uploads\/2026\/02\/square-info-icon.svg\" alt=\"Info\">\r\n    <\/div>\r\n    <div class=\"text-box-inpost\">\r\n      <span class=\"label-inpost\"><span class=\"translation-block translation-block-banner-text\">Acces timpuriu<\/span><\/span>\r\n      <h4><span class=\"translation-block translation-block-banner-text\">Mai ave\u021bi nevoie de ajutor?<\/span><\/h4>\r\n      <p><span class=\"translation-block translation-block-banner-text\">Contacta\u021bi echipa noastr\u0103 de servicii pentru clien\u021bi.<\/span><\/p>\r\n    <\/div>\r\n  <\/div>\r\n\r\n  <div class=\"banner-right-inpost\">\r\n    <a href=\"https:\/\/panel.mybox.com\/helpdesk2\/v\/list\/\" class=\"banner-button-inpost\"><span class=\"translation-block translation-block-banner-text\">Trimite mesaj<\/span><\/a>\r\n  <\/div>\r\n<\/div><\/div>\n\n<div class=\"translation-block translation-block-merged\"><p class=\"wp-block-paragraph\">If your site is currently slow or unresponsive due to a flood:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>Activate via Dashboard:<\/strong> Security \u2192 Quick Actions \u2192 <strong>I&#8217;m Under Attack Mode<\/strong>.<\/li>\n\n\n\n<li><strong>What it does:<\/strong> Forces a JavaScript challenge on <em>every<\/em> visitor. In 2026, Cloudflare uses <strong>Managed Challenges<\/strong>, which are invisible to legitimate human users but stop 99.9% of AI-automated botnets.<\/li>\n<\/ul>\n\n\n\n<h4 class=\"wp-block-heading\"><strong>2. Adaptive DDoS Protection (The &#8220;Zero-Human&#8221; Shield)<\/strong><\/h4>\n\n\n\n<p class=\"wp-block-paragraph\">Cloudflare now offers <strong>Adaptive DDoS Protection<\/strong> for Pro, Business, and Enterprise plans.<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>Sensitivity Level:<\/strong> Set this to <strong>High<\/strong>.<\/li>\n\n\n\n<li><strong>Why it matters:<\/strong> It creates a &#8220;baseline&#8221; of your normal <strong>mybox<\/strong> traffic. If it detects a deviation (even a small, surgical one targeting a specific API), it triggers an automatic block without you needing to lift a finger.<\/li>\n<\/ul>\n\n\n\n<h4 class=\"wp-block-heading\"><strong>3. Advanced Rate Limiting (API &amp; Login Protection)<\/strong><sup><\/sup><\/h4>\n\n\n\n<p class=\"wp-block-paragraph\">Standard Rate Limiting is no longer sufficient for 2026 attacks that use rotating &#8220;clean&#8221; IPs.<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>Configure via Security \u2192 WAF \u2192 Rate Limiting Rules.<\/strong><\/li>\n\n\n\n<li><strong>The Strategy:<\/strong> Apply &#8220;Surgical Throttling&#8221; on sensitive endpoints like <code>\/wp-login.php<\/code>, <code>\/xmlrpc.php<\/code>, or your search bar.<\/li>\n\n\n\n<li><strong>2026 Metric:<\/strong> Use <strong>Sliding Window<\/strong> rate limiting, which is more effective against &#8220;burst&#8221; attacks than the old fixed-window method.<\/li>\n<\/ul>\n\n\n\n<h4 class=\"wp-block-heading\"><strong>4. Super Bot Fight Mode (Machine-to-Machine Defense)<\/strong><\/h4>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>Action:<\/strong> Enable <strong>Bot Fight Mode<\/strong> (Free) or <strong>Super Bot Fight Mode<\/strong> (Pro+).<\/li>\n\n\n\n<li><strong>New in 2026:<\/strong> This now includes <strong>AI-model detection<\/strong>. It identifies requests generated by Large Language Models (LLMs) that are trying to scrape your content or map your network vulnerabilities.<\/li>\n<\/ul>\n\n\n\n<h4 class=\"wp-block-heading\"><strong>5. Hardening the Connective Tissue: Origin Shielding<\/strong><\/h4>\n\n\n\n<p class=\"wp-block-paragraph\">A common mistake on <strong>mybox<\/strong> is leaving your server&#8217;s &#8220;Real IP&#8221; exposed. If an attacker knows your IP, they can bypass Cloudflare entirely.<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>Cloudflare Tunnels (Argo):<\/strong> The gold standard for 2026. Instead of opening ports on your server, you run a small daemon that creates an encrypted &#8220;tunnel&#8221; directly to Cloudflare.<\/li>\n\n\n\n<li><strong>IP Whitelisting:<\/strong> If you don&#8217;t use Tunnels, configure your server firewall to <strong>only<\/strong> allow traffic from <a href=\"https:\/\/www.cloudflare.com\/ips\/\" target=\"_blank\" rel=\"noreferrer noopener\">Cloudflare\u2019s official IP ranges<\/a>.<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\"><\/p>\n\n\n\n<h3 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"Recommended_2026_Security_Profile\"><\/span><strong>Recommended 2026 Security Profile<\/strong><span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n\n<figure class=\"wp-block-table\"><table class=\"has-fixed-layout\"><thead><tr><td><strong>Setting<\/strong><\/td><td><strong>Recommended Value<\/strong><\/td><td><strong>Why?<\/strong><\/td><\/tr><\/thead><tbody><tr><td><strong>Security Level<\/strong><\/td><td><strong>High<\/strong><\/td><td>Stops known bad actors before they reach your site.<\/td><\/tr><tr><td><strong>Challenge Passage<\/strong><\/td><td><strong>15 Minutes<\/strong><\/td><td>Forces bots to re-prove themselves frequently during an attack.<\/td><\/tr><tr><td><strong>TLS 1.3<\/strong><\/td><td><strong>Enabled<\/strong><\/td><td>Faster and more secure than older protocols.<\/td><\/tr><tr><td><strong>WAF Managed Rules<\/strong><\/td><td><strong>On<\/strong><\/td><td>Protects against 2026 &#8220;Zero-Day&#8221; exploits automatically.<\/td><\/tr><\/tbody><\/table><\/figure>\n\n\n\n<h3 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"Monitoring_and_Response\"><\/span><strong>Monitoring and Response<\/strong><span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Check the <strong>Security \u2192 Events<\/strong> dashboard daily. In 2026, Cloudflare provides &#8220;High-Sensitivity&#8221; logs that show you exactly which country or ASN (Network Provider) the attack is originating from. If 90% of your attack is coming from a specific region where you don&#8217;t do business, use a <strong>WAF Custom Rule<\/strong> to block that entire country temporarily.<\/p>\n<\/div>","protected":false},"author":1,"featured_media":0,"parent":0,"menu_order":0,"template":"","format":"standard","manualknowledgebasecat":[10,12],"manual_kb_tag":[936,984,985,9267,9268,9269,9270,9271,9272,9273],"class_list":["post-7791","manual_kb","type-manual_kb","status-publish","format-standard","hentry","manualknowledgebasecat-safety","manualknowledgebasecat-cloudflare","manual_kb_tag-cloudflare","manual_kb_tag-ddos-protection","manual_kb_tag-botnet-attacks","manual_kb_tag-volumetric-attacks","manual_kb_tag-high-velocity-attacks","manual_kb_tag-autonomous-defense","manual_kb_tag-under-attack-mode","manual_kb_tag-managed-challenges","manual_kb_tag-adaptive-os-protection","manual_kb_tag-adaptive-protection"],"_links":{"self":[{"href":"https:\/\/mybox.com\/help\/ro\/wp-json\/wp\/v2\/manual_kb\/7791","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/mybox.com\/help\/ro\/wp-json\/wp\/v2\/manual_kb"}],"about":[{"href":"https:\/\/mybox.com\/help\/ro\/wp-json\/wp\/v2\/types\/manual_kb"}],"author":[{"embeddable":true,"href":"https:\/\/mybox.com\/help\/ro\/wp-json\/wp\/v2\/users\/1"}],"version-history":[{"count":1,"href":"https:\/\/mybox.com\/help\/ro\/wp-json\/wp\/v2\/manual_kb\/7791\/revisions"}],"predecessor-version":[{"id":7792,"href":"https:\/\/mybox.com\/help\/ro\/wp-json\/wp\/v2\/manual_kb\/7791\/revisions\/7792"}],"wp:attachment":[{"href":"https:\/\/mybox.com\/help\/ro\/wp-json\/wp\/v2\/media?parent=7791"}],"wp:term":[{"taxonomy":"manualknowledgebasecat","embeddable":true,"href":"https:\/\/mybox.com\/help\/ro\/wp-json\/wp\/v2\/manualknowledgebasecat?post=7791"},{"taxonomy":"manual_kb_tag","embeddable":true,"href":"https:\/\/mybox.com\/help\/ro\/wp-json\/wp\/v2\/manual_kb_tag?post=7791"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}