Step 2: Enable EIP Protection
When you use CFW for the first time, you need to synchronize assets and enable protection for EIP assets so that your service traffic can pass through CFW.
After EIP protection is enabled, the default action of CFW is Allow. CFW will block traffic based on your protection policy.
Procedure
- Log in to the management console.
- Click in the upper left corner of the management console and select a region or project.
- In the navigation pane, click and choose Figure 1. . The Dashboard page will be displayed, as shown in
- (Optional) If the current account has only one firewall instance, the firewall details page is displayed. If there are multiple firewall instances, click View in the Operation column to go to the details page.
- In the navigation pane, choose Figure 2.
. The EIP page is displayed. The EIP information is automatically updated to the list. See
(Optional) Manually refresh the list. Click Synchronize EIP in the upper right corner of the page to import your EIP information to the list and refresh the EIP list.
Currently, IPv6 addresses cannot be protected.
- Enable EIP protection.
- Enable protection for a single EIP. In the row of the EIP, click in the Operation column.
- Enable protection for multiple EIPs. Select the EIPs to be protected and click Enable Protection above the table.
- On the page that is displayed, check the information and click Bind and Enable. Then the Protection Status changes to Protected.
After EIP protection is enabled, the default access control policy is Allow.
Feedback
Was this page helpful?
Provide feedbackThank you very much for your feedback. We will continue working to improve the documentation.