Run a one-click security check to scan a server for vulnerabilities, baseline risks, and web shells, and collect its asset fingerprints — all in a single operation.
Prerequisites
Before you begin, confirm that your servers meet the following requirements:
| Billing method | Requirement |
|---|---|
| Subscription instance | The account has purchased the Advanced, Enterprise, or Ultimate edition, and that edition authorization is attached to the target servers. |
| Pay-as-you-go | The account has enabled pay-as-you-go, and the Advanced, Enterprise, or Ultimate edition authorization is attached to the target servers. |
How it works
When a security check starts, Security Center concurrently runs four detection tasks on the target server:
Vulnerability detection — scans for known vulnerabilities
Baseline detection — checks for baseline risks and configuration issues
Web shell detection — identifies malicious web shell files
Asset fingerprint collection — collects asset fingerprint data
Results are automatically updated on the asset's details page when the check completes.
Run a security check
Log on to the Security Center console. In the upper-left corner, select the region where your server is located: Chinese Mainland or Outside Chinese Mainland.
In the left navigation pane, choose Assets > Host.
On the Host page, click the Server tab. Select one or more servers to scan, then click Security Check below the list.
In the Security Check dialog box, select the checks to run and click OK. In the Note dialog box, click OK to confirm.
NoteTip: A security check increases the server's CPU and memory usage and may affect running services. Schedule checks during off-peak hours to minimize impact.
The check starts immediately. It typically completes within 1–5 minutes. Do not trigger another check while one is in progress.
What's next
After the check completes, go to the asset's details page in the Security Center console to review the results.