Security Center provides multiple activation entries. In addition to purchasing a service, the free benefits that you claim when you purchase an ECS instance and the exhaustion of a pay-as-you-go free trial quota also automatically activate pay-as-you-go (postpaid) services and incur charges. This topic describes all activation entries of Security Center and the instance types that they create, and explains how to reconcile the activation status, activation time, and instance ID of a feature in the Security Center console and the Expenses and Costs console.
Overview
If an unexpected Security Center pay-as-you-go instance or bill appears under your account, the service was most likely activated indirectly through a free benefit or trial quota listed in Activation entries. We recommend that you first identify the source against the activation entries, and then reconcile the activation time and instance ID as described in Query entries for activation records.
Activation entries
Activation entries of Security Center fall into two categories: direct activation and associated activation. Associated activation does not require a separate order in Security Center. It is easy to overlook and is the main cause of unexpected pay-as-you-go instances under an account.
|
Activation entry |
Activation description |
Instance and billing description |
|
Direct activation |
Activate basic free protection capabilities. For more information, see Enable Security Center Basic. |
Subscription instance. |
|
Purchase edition services, value-added services, or separately sold services on the buy page. For more information, see Purchase Security Center. |
Subscription instance or pay-as-you-go instance. |
|
|
Apply for a 7-day Enterprise Edition trial. For more information, see Enable a 7-day Enterprise Edition free trial. |
Subscription instance. No charges are incurred during the trial period. After the trial expires, the instance is automatically downgraded to Basic Edition and is not automatically converted to pay-as-you-go. |
|
|
Claim a savings plan deduction quota to try out pay-as-you-go capabilities. For more information, see Activate the pay-as-you-go free trial. |
Pay-as-you-go instance. After the deduction quota is used up, the pay-as-you-go features continue to run and are billed based on actual usage. |
|
|
Associated activation: Claim the free comprehensive host protection benefit when you purchase an ECS instance. |
When you purchase an ECS instance, select Comprehensive Host Protection. For more information, see ECS comprehensive host protection benefits.
|
Pay-as-you-go instance. Each Alibaba Cloud account can claim this benefit only once and cannot claim it again. After the benefit is claimed, no expiration date applies. |
Query entries for activation records
The Security Center console reflects the service status that is currently in effect, and the Expenses and Costs console stores order and quota consumption records. The following table lists the corresponding entry for each query objective. For detailed steps, see the subsequent sections.
|
Query objective |
Query entry |
|
Protection capabilities that are currently in effect, usage statistics of each module, and pay-as-you-go activation status |
Recommended: The Security Center console - Overview page. |
|
Instance ID, and the time and order number of activation, renewal, or configuration change |
The Expenses and Costs - My Orders page, filtered by product. |
|
Quota usage of ECS complimentary benefits and trial resource plans |
The Expenses and Costs - Resource Plans page, or the instance details page in the ECS console. |
|
Consumption of savings plan deduction quotas |
The Expenses and Costs - Savings Plans page. |
View the feature activation overview (Security Center console)
The Overview page in the Security Center console summarizes the service activation status of the current account. Use this page to quickly confirm the protection capabilities that are in effect, without checking bills item by item.
-
In the service overview area on the right side of the page, view the service activation status and usage statistics.
-
Subscription area: displays the edition that you purchased, and the activation status and usage statistics of each protection module.
-
Enable Pay-as-You-Go Service area: displays the activation status of pay-as-you-go capabilities. If the switch on the right side of a feature is turned on, the pay-as-you-go feature is enabled.
-
Separately sold service areas: Some separately sold services have their own display modules on the Overview page. These modules are usually located below the Enable Pay-as-You-Go Service area and display the activation status of each feature by module.
-
View orders and instance IDs
Go to the Expenses and Costs console and filter orders by the product name that corresponds to the feature to view the instance ID, activation time, order number, and charges that correspond to feature activation.
Order and instance descriptions
-
Bundled-purchase instances:
-
Subscription:
-
All bundled-purchase features share the same subscription resource instance ID. If you unsubscribe from this instance, you lose all bundled-purchase features.
NoteRenewal, upgrade, and downgrade operations do not generate a new instance ID. Only a new purchase generates a new instance ID.
-
Bundled-purchase features mainly include edition services and value-added services. For more information, see Purchase Security Center - Edition services and value-added services.
-
-
Pay-as-you-go: All bundled-purchase features share the same pay-as-you-go instance ID. Pay-as-you-go instances follow the instance ID reuse rule. If you previously enabled a pay-as-you-go service, disabled it, and then enabled it again (including activation that is triggered by associated activation), the system reuses the original instance ID and does not generate a new order record.
NoteAs a result, when you query the order in the Expenses and Costs console, the creation time of the order is the time when the pay-as-you-go service was first activated, not the time when the current feature took effect. If no order is returned, expand the query range of Creation Time Range.
-
-
Separately purchased instances: In the Expenses and Costs console, separately sold features have their own subscription resource instance ID or pay-as-you-go instance ID. The instance ID of each feature is different. Unsubscribing from the instance of one feature does not affect other instances.
Query steps
-
Go to the Expenses and Costs - My Orders page, and then click Show All Filters.
-
Configure the search conditions as described in the following section, and then click Search to view the activation, renewal, and configuration change orders of Security Center and the time when each order was placed.
NoteBy default, only the orders from the last 6 months are queried. If the expected order is not returned, manually adjust the Creation Time Range filter condition to expand the query range.
-
Product Name: select Security Center.
-
Commodity Name: The common commodity names are described as follows.
-
Bundled-purchase features: Security Center, Security Center (Pay-as-you-go).
-
Separately sold features: Agentic EDR (intelligent host detection and response), Attack Management (pay-as-you-go), Security Operations Agent, and Agentic penetration testing (Agentic BAS). For more commodity names, see product names corresponding to features.
-
-
Asset/Resource Instance ID: the instance ID that corresponds to the feature.
-
View ECS trial and complimentary benefits
ECS comprehensive host protection free benefit
When you purchase an ECS instance and select the Comprehensive Host Protection option in the Instance and Image area, the system randomly selects one instance from the ECS instances that you purchase in the current order by default, and binds the Comprehensive Host Protection protection level (ECS complimentary protection) to it. For information about how to claim the ECS comprehensive host protection benefit, see ECS comprehensive host protection benefits.
You can change the protection level for the instance later. For more information, see Configure protection editions or levels.
-
View the feature activation status: Go to the Security Center console Overview page. In the Enable Pay-as-You-Go Service area, confirm that the corresponding Vulnerability Fixing, Host and Container Security, and Agentic Cloud Security Posture Management pay-as-you-go switches are turned on.
-
View the benefit usage:
-
Go to the ECS console - Instances page, and click the name of the instance to which the free benefit is bound to go to the instance details page.
-
On the Security Protection tab, view Comprehensive Host Protection Free Benefit in the Risk Overview area.
-
Protection level: the protection level that is bound to the current server, which is Comprehensive Host Protection (ECS complimentary protection).
NoteIf you manually changed the protection level in the Security Center console, the protection level after the change is displayed.
-
Move the pointer over the effective status of Free Security Benefits to view the usage of the current benefit.
-
-
-
View the corresponding pay-as-you-go instance ID (optional): Go to the Expenses and Costs - My Orders page. Set Product Name to Security Center and Commodity Name to Security Center (Pay-as-you-go) to view the corresponding pay-as-you-go instance.
NoteIf you previously activated the Security Center pay-as-you-go service, no new pay-as-you-go order is generated. You can expand the query range of Creation Time Range.
View savings plan quotas
If you use a Security Center savings plan, view the consumption of the deduction quota on the Savings Plans page of the Expenses and Costs console. This helps you determine which capabilities are billed on a pay-as-you-go basis after the quota is used up.
-
Go to the Security Center console - Overview.
-
In the Enable Pay-as-You-Go Service section, click View Savings Plan to go to the Cost Management - Savings Plan page.
-
On the Savings Plan page, view quota consumption details on the Overview and View Details tabs.
NoteThe Savings Plan Name is "Security Center Savings Plan Free Trial International Edition".
Appendix: Security Center billing modules
Security Center involves multiple products in the Expenses and Costs console. When querying orders in the Expenses and Costs console, you can locate the activation records that correspond to each feature by product name, product code, and billing method in the following table.
|
Product category |
Product name |
Product code |
Billing method |
|
Bundled purchase |
Security Center |
sas |
Subscription |
|
Security Center (Pay-as-you-go) |
sas_postpaid_public_cn |
Pay-as-you-go |
|
|
Resource plan |
Security Center vulnerability fix resource plan |
sas_vul_dp_cn |
Subscription |
|
Security Center cloud security posture management resource plan |
sas_cspm_dp_cn |
Subscription |
|
|
Security Center agentless detection resource plan |
sas_Agentless_dp_cn |
Subscription |
|
|
Security Center virus protection resource plan |
sas_viruspackage_dp_cn |
Subscription |
|
|
Security Center basic service resource plan |
sas_service_dp_cn |
Subscription |
|
|
Separately sold |
Agent Security Center (Pay-as-you-go) |
sas_agentsecurityPost_public_cn |
Pay-as-you-go |
|
Attack surface management |
sas_agenticasm_public_cn |
Subscription |
|
|
Agentic BAS basic service |
agenticbas_service_subscription_cn |
Subscription |
|
|
Security Center savings plan free trial (China site) |
sas_freetier_spn_cn |
Subscription |
|
|
Intelligent host detection and response |
sas_edr_public_cn |
Subscription |
|
|
Intelligent host detection and response (Pay-as-you-go) |
sas_edrPost_public_cn |
Pay-as-you-go |
|
|
Agentic BAS (Pay-as-you-go) |
agenticbas_PayAsYouGo_cn |
Pay-as-you-go |
|
|
Security Operations Agent subscription |
secopsagent_service_subscription_cn |
Subscription |
|
|
Security Operations Agent (Pay-as-you-go) |
secopsagent_PayAsYouGo_cn |
Pay-as-you-go |
|
|
Agentic SOC (Pay-as-you-go) |
Agentic_SOC_PayAsYouGo_cn |
Pay-as-you-go |
|
|
Attack surface management (Pay-as-you-go) |
sas_agenticAsmPostpaid_public_cn |
Pay-as-you-go |
|
|
Agentic SOC subscription |
Agentic_SOC_subscription_totalpack_cn |
Subscription |
After a resource plan deduction quota is used up, the corresponding pay-as-you-go capabilities continue to run and incur charges. Some features support both subscription and pay-as-you-go, and are displayed as different products in the Expenses and Costs console.