Detect and prevent DDoS attacks on Citrix ADC via DTLS

Since mid-December the Citrix ADC (Netscaler) gateway on the UDP: 443 – DTLS interface (for EDT) has been under attacked with DDoS ……
How can these attacks be detected and what can be done to avoid that?
On December 24th, Citrix announced in a “Security Bulletin” a DDoS attack pattern that could affect Citrix ADCs.
As part of this attack, attackers can overload the Citrix ADC DTLS network throughput (ADC Out).

Citrix ADC Exploit “CVE-2019-19781”-en

Citrix ADC Exploit • Solution Architect · Trainer · Project Manager • Roland Geldner

Last revised on January 27th, 2020 What’s happened: Citrix Systems received a warning regarding a security vulnerability on December 17, 2019 published in all Citrix ADC and gateway platforms. The vulnerability has since spread through the media and television. Several working exploits were released on Friday, January 10th, 2020. The number of attacks registered has … Read more