Enabling Application Protection
To protect your applications with RASP, you simply need to add probes to them, without having to modify application files.
Technical Principles
Probes (monitoring and protection code) are added to the checkpoints (key functions) of applications through dynamic code injection. The probes identify attacks based on predefined rules, data passing through the checkpoints, and contexts (application logic, configurations, data, and event flows).
Prerequisites
You have enabled HSS premium, WTP, or container edition.
Constraints
- Currently, only Linux servers are supported.
- So far, only Java applications can be protected.
- The premium, WTP, and container editions support operations related to application protection.
Procedure
- Log in to the management console.
- In the upper left corner of the page, select a region, click , and choose Security & Compliance > HSS.
- Choose Prevention > Application Protection. Click the Protected Servers tab.
If your servers are managed by enterprise projects, you can select an enterprise project to view or operate the asset and scan information.
Figure 1 Viewing protection settings
- Click Add Server. Select servers in the dialog box that is displayed.
You can select a default security policy or create a security policy.
Figure 2 Selecting the target server and policy
- Click Add and Enable Protection.
- On the Protected Servers tab, click the status in the RASP Protection column.
Figure 3 Viewing the progress of enabling protection
- Check the RASP software installation progress. Wait until the message "Installation completed." is displayed.
Figure 4 Installation completed
- Log in to the server, go to the Spring Boot startup path, and copy the parameters from the Configure Startup Parameters step to the command box.
Figure 5 Configuring startup parameters
- Restart the microservice to apply the protection settings.
- On the Protected Servers tab, check the protection status in the Microservice Protection column. If the status is Active, the protection has been enabled.
Feedback
Was this page helpful?
Provide feedbackThank you very much for your feedback. We will continue working to improve the documentation.See the reply and handling status in My Cloud VOC.
For any further questions, feel free to contact us through the chatbot.
Chatbot