Sangfor HCI and aSV provide a unified infrastructure combining compute, storage, networking, and built-in security to simplify deployment, operations, and services.
Distributed firewall is supported starting from Sangor HCI 5.2 version, which can achieve control over access to any node based on virtual machine IP address, virtual machine, VM group or VM tag.
To configure a firewall rule, click Distributed Firewallin Networkingand then click Newto enter the following page.
To enable firewall rule, select Enabled. Name: Specifies a distinguishable name for the firewall rule. Match Clause: For Source and Destination, options are Any IP address, Specified IP address, Specified virtual machine. If Specified IP addressis selected, you may select IP Groups or IP Addresses. If Specified virtual machineis selected, you may select Virtual Machine, VM Group, or Tags. Service: Specifies service(s) to which the firewall rule applies. Action: Specifies action to matching service, Allow or Deny.