Sangfor HCI and aSV provide a unified infrastructure combining compute, storage, networking, and built-in security to simplify deployment, operations, and services.
aSecurity provides cyber attack protection policies for the virtual network topology and Layer 7 network protection for business systems within the cloud.
Prerequisites
N/A
Precautions
The backend aggregates cyber attack events by impact scope and attack source based on cyber attack log data once every 10 minutes.
You can configure up to 512 IPS policies and up to 512 web vulnerability protection policies.
A VM group can contain up to 100 IP addresses. If more IP addresses exist, a new group needs to be created.
Steps
Go to aSecurity > Security Capabilities > Cyber Attack Protection, click Create, configure the basic, source, and destination information, and select applicable scenarios for the policy.
• IPS: Detects and defends against attacks exploiting operating system, application, and protocol vulnerabilities.
• Web Vuln Protection: Protects web servers from various attacks targeting web applications, such as SQL injections, XSS attacks, and command injections.
Go to Cyber Attack Protection Policies > Templates to view or manage intrusion prevention policies and web vulnerability policies.
• Click Details in the Operation column of the policy to view its details.
• Go to Signature Database and set Action (Allow or Drop) and Status (Enable or Disable).