What is a Connection Flood?
F5 BIG-IP Local Traffic Manager (LTM) and BIG-IP Advanced Firewall Manager (AFM) neuter connection flood attacks by separating the TCP connection table from the rest of the server's operations. All connection requests are accepted, thereby making the attacker think the attack is successful. These requests are then aggressively and quickly processed by a dedicated server, which reaps the spurious connections and allows the valid connections to reach the protected server resources.
