Sangfor HCI and aSV provide a unified infrastructure combining compute, storage, networking, and built-in security to simplify deployment, operations, and services.
aSecurity supports blacklist management for attack protection or brute-force attack events and whitelist management for IP addresses, VMs, security policies, or threat events.
Prerequisites
N/A
Precautions
For the permanent blacklist, you can configure up to 2,048 items.
For the rule whitelist, you can configure up to 2,048 items.
For the VM/IP whitelist, you can configure up to 2,048 items.
Steps
On the Permanent Blacklist tab, add or remove source IP addresses related to attack protection events and remove those related to brute-force attack events as needed.
On the Rule Whitelist tab, add, remove, enable, or disable the enabled web vulnerability protection or IPS policies as needed.
On the VM/IP Whitelist tab, add or remove source IP addresses and destination IP addresses/VMs related to attack protection events and remove those related to brute-force attack events as needed.
On the File Whitelist tab, remove trusted threat events as needed, which will also remove files with the same MD5 value.