{{ $t('productDocDetail.guideClickSwitch') }}
{{ $t('productDocDetail.know') }}
{{ $t('productDocDetail.dontRemind') }}
6.11.3
{{sendMatomoQuery("Sangfor Cloud Platform (SCP)","Access Records and Risk Monitoring")}}

Access Records and Risk Monitoring

{{ $t('productDocDetail.updateTime') }}: 2025-12-26

Introduction

You can view the access relationships and risk status (including unknown access, no access, and denied access) in the cloud environment.

Related Concepts

Unknown access: The source or destination IP address cannot be mapped to any asset by SCP, and may be an IP address outside the virtual network.

No access: A VM in the virtual network does not initiate access to or receive access from any address.

Denied access: Access traffic has been denied by the distributed firewall.

Constraints and Restrictions

Only access records identified by SCP are displayed. Traffic outside SCP's monitoring scope is not shown.

The access risk status is updated with a latency of about 5 minutes. For scenarios with high realtime monitoring requirements, additional monitoring tools are required.

Precautions

When unknown access is detected, check whether it is caused by unauthorized external access or unmanaged assets, and fix it promptly.

For denied access, check whether the denial is a mistake. If yes, adjust the firewall policy accordingly.

Review access risks regularly and establish a risk fixing mechanism, for example, investigating unknown access within 24 hours after detection.

Steps

Step 1.Log in to SCP and go to Networking >Network Insight.

Step 2.View the access risk status of different VMs. Click a VM to view detailed access records (including the access direction, protocol, port, and whether the access was denied).

Step 3.In the Tasks section, view the access risks and policy protection status to promptly identify abnormal access.