Checking the Homepage of the Border Protection and Response Service
Context
On the home page of Border Protection and Response Service, you can view the overall running status of the service, including Real-time protection by local devices, Cloud-based analysis and intelligent identification, and Risk traceability and in-depth cleaning. It also displays statistics such as TOP Detected Attack Type, Threat Blocking Rate, Threat Event Trends in 30 Days, and Blacklist Trends in 30 Days.
Procedure
- Log in to the Huawei Qiankun console, and choose .
- Check the homepage of the Border Protection and Response Service.
Figure 1 Homepage of the Border Protection and Response Service
Table 1 Introduction to the homepage of the Border Protection and Response Service Section
Module
Description
Service value presentation
Border Protection and Response Service Has Protected X Sites for X Days
Displays the number of sites, number of days for which the service has been used, and converted labor efficiency. You can click the site number to view the site list.
Overview
Displays the overall overview of security events.
- Original Alarms: Huawei Qiankun identifies original events based on threat logs provided by Qiankun Shield devices.
- Alert: Huawei Qiankun aggregates original events into alarm events after automatic model-based analysis and manual handling by security operations experts. You can click the event number to view the list of alarm events.
- Incident: After further intelligent analysis, Huawei Qiankun identifies threat events and classifies them into three types: external attack sources, compromised hosts, and malicious files.
TOP Detected Attack Type
Displays top 5 detected attack types by quantity.
Threat Blocking Rate
Displays information about threat event blocking.
- Attack flow + source blocking: displays the number of threat events detected and blocked by Qiankun Shield devices based on security protection policies and blacklisted by Huawei Qiankun.
- Attack flow blocking: displays the number of threat events detected and blocked by Qiankun Shield devices based on security protection policies.
- Attack source blocking: displays the number of threat events to which Huawei Qiankun has delivered blacklists.
- Other events: displays the number of threat events that have not been handled.
Alert Trends in 30 days
Displays the trend of the number of alarm events in the last 30 days.
Blacklist Trends in 30 days
Displays the trend of the number of delivered blacklists in the last 30 days.
Smart Assistant
Health status evaluation
Provides a quick entry for handling threat events by site.
Event Handling
Huawei Qiankun automatically processes exception events to ensure normal service running.
Displays the number and overview of exception events in the last 24 hours.
Feedback
Was this page helpful?
Provide feedbackThank you very much for your feedback. We will continue working to improve the documentation.See the reply and handling status in My Cloud VOC.
For any further questions, feel free to contact us through the chatbot.
Chatbot