Updated on 2024-10-09 GMT+08:00

Example 3: Allowing Traffic from a Service to a Platform

This section describes how to allow traffic from a service to a platform. For more parameter settings, see Adding Protection Rules to Block or Allow Traffic.

Allowing Traffic from a Service to a Platform

To allow an EIP (xx.xx.xx.48) to access ports 80 and 443 of cfw-test.com and *.example.com, configure parameters as follows. The parameters not mentioned below can be configured as needed.
  • Create an application domain name group and configure the platform domain names, as shown in Figure 1.
  • Configure the following protection rules:
    • One of the rule blocks all traffic, as shown in Figure 2. The priority is the lowest.
    • The other rule allows the traffic from the EIP to the platform, as shown in Figure 3. The priority is the highest.
Figure 1 Adding the domain name group of a platform
Figure 2 Blocking all traffic
Figure 3 Allowing the EIP to access ports 80 and 443 of the platform