码迷,mamicode.com
首页 > 其他好文 > 详细

Cyber Security - Palo Alto Security Policies(2)

时间:2020-03-15 19:16:34      阅读:74      评论:0      收藏:0      [点我收藏+]

标签:art   internet   share   https   moni   iss   board   can   info   

Task 3

The SOC(Security Operation Center) monitoring team dashboard reported more 1,000 requests to one of our eCommerce Server HTTPS portals in a matter of minutes. The source address identified by our SOC came from Africa and we only serve customers in the United States, China, and Europe.

Please block access to our DMZ from all the internet but allow the USA, China, and Europe.

Configure the firewall policy. Please mind that the order of this policy may affect the effect.

技术图片

 

 技术图片

 

 技术图片

 

 技术图片

 

 技术图片

 

 技术图片

 

 技术图片

 

 技术图片

 Task 4

Last week after a policy change by another engineer, users from the marketing department were able to access the HR Fileserver shares.

Can you identify the root cause and remediate this issue asap?

Configure firewall policies.

技术图片

 

 

Policy one: HR-Allow-HR-Servers

技术图片

 

 技术图片

 

 技术图片

 

 技术图片

 

 技术图片

 

 技术图片

 

 技术图片

 

 Policy Two: Deny-Access-to-HR_Servers

技术图片

 

 技术图片

 

 技术图片

 

 技术图片

 

 技术图片

 

 技术图片

 

 技术图片

 

Cyber Security - Palo Alto Security Policies(2)

标签:art   internet   share   https   moni   iss   board   can   info   

原文地址:https://www.cnblogs.com/keepmoving1113/p/12496946.html

(0)
(0)
   
举报
评论 一句话评论(0
登录后才能评论!
© 2014 mamicode.com 版权所有  联系我们:gaon5@hotmail.com
迷上了代码!