In the Aliyun background of cloud shield monitoring---"threat---" attack, will find a large number of malicious attacks every day, there are a large number of GET requests, resulting in server resources waste useless consumption.
Type of attack in the last 7 days
Carefully look at the source of the attack information, found that more than 99% of the attack IP address, there are historical attack records, the following figure:
I feel Aliyun is perfectly capable of judging and shielding an attacker's IP address, protecting the client's interests (PS: Using historical attacks to determine whether or not to shield IP), but Aliyun did not. The Aliyun technical staff was consulted to shield the attacker's IP in the form of a security group.
Into the security group: Backstage---"Aliyun ECS---" Security group---"Configuration Rules---" Public network into the direction (PS: On the public network, the intranet does not understand Baidu, should be very good understanding).
Click---in the upper right corner to
add security group rules
As shown in the following figure, the
public network rejects the IP address to access the Web site.
Authorization object: In the picture, the 45.58.62.0/24 is displayed in a red box, which means that the 45.58.62.0~45.58.62.255 IP address is prohibited and is represented by a mask.
Shielding individual IP address directly write 45.58.62.1 or 45.58.62.2, etc.