Cloud Firewall - Access Control Engine of VPC Firewall Supports Strict Mode
Apr 14 2025
Cloud FirewallContent
Target customers: enterprises and institutions that want to configure domain-based access control policies for virtual private cloud (VPC) firewalls to protect east-west traffic over internal networks. Features released: 1. Cloud Firewall allows you to set the access control engine to the strict mode when configuring access control policies for VPC firewalls to improve security control effectiveness. 2. After the strict mode is enabled, Cloud Firewall does not directly allow traffic whose application type or domain name is unidentified. Cloud Firewall continues to match the traffic against the access control policy that has a lower priority until an access control policy is hit. Then, Cloud Firewall performs the action specified in the access control policy. 3. Cloud Firewall allows policies to hit log audit and analysis results.
Help Document
https://www.alibabacloud.com/help/cloud-firewall/cloudfirewall/user-guide/create-an-access-control-policy-for-a-vpc-firewall