The Cloud Asset Overview tab gives you a unified view of your cloud assets' security posture. It combines asset inventory, network topology, security scoring, and service coverage in a single dashboard so you can monitor risk and act without switching between consoles.
This tab serves two audiences:
Cloud security admins and architects: Monitor posture, identify risk hotspots across regions, and track security service coverage.
DevOps and workload owners: Locate assets with active alerts or vulnerabilities and prioritize remediation.
Limitations
The Cloud Asset Overview tab is available only in the Enterprise and Ultimate editions of Security Center. To upgrade, see Purchase Security Center and Upgrade and downgrade Security Center.
Open the Cloud Asset Overview tab
Use the latest version of Chrome for the best experience on this tab.
Log on to the Security Center console. In the top navigation bar, select China as the region of the asset that you want to protect.
In the left-side navigation pane, choose Assets > Overview.
Click the Cloud Asset Overview tab.
Dashboard sections
The Cloud Asset Overview tab has four sections. Each surfaces a different dimension of your asset security posture.
Overview of assets and network topology
This section displays the security situation and network topology of your assets across all regions. In the current region, it shows the following asset types: Elastic Compute Service (ECS) instances, Server Load Balancer (SLB) instances, and NAT Gateways.
In the network topology, you can view the virtual private cloud (VPC) in which an ECS instance resides and the security services that process the internet traffic destined for your servers. The network topology traces the path that inbound internet traffic takes before reaching your ECS instances: Alibaba Cloud DNS → Anti-DDoS Pro and Anti-DDoS Premium → Web Application Firewall (WAF) → Cloud Firewall → SLB and NAT Gateway → ECS instance. This lets you see which security services protect each asset and where gaps exist.
Color coding
Asset nodes are color-coded by risk level:
| Color | Risk level | Recommended action |
|---|---|---|
| Red | High | View and handle risks immediately |
| Orange | Medium | Review when possible |
| Green | None | No action needed |
Hover details
Hover over any asset to see its ID, security status, public IP address, private IP address, detected alerts, and vulnerabilities.
Topology icons
| Icon | Meaning | Number shown |
|---|---|---|
| Alert | Alerts detected on the asset | |
| Vulnerability | Vulnerabilities detected on the asset | |
| Baseline risk | Baseline risk items detected on the asset |
Security score
The Security Score section displays the security score of your assets. To start addressing detected risks, click Reinforce. For a full explanation of how the score is calculated, see Secure Score.
Security products
The Security Products section displays the number of Alibaba Cloud security services you have purchased and the entry point to the console of each security service. Click any service name to go directly to that service's console.
Use this section to verify that the right security services are deployed in front of your assets. Cross-reference it with the network topology in the Overview of assets and network topology section to identify coverage gaps.
Cloud products
The Cloud Products section lists the Alibaba Cloud services you have purchased and lets you explore their network topology by availability zone.
Click Availability Zone to see risk statistics broken down by zone.
Click a zone name to view the network topology of cloud assets in that zone.
Click a cloud service name to see risk statistics for that service.