Ngaf Policy

IT Infra Lv1Posted 12 Jun 2024 09:51

hi, ive made a policy for endpoints, any ideas how to exclude alicloud servers and DSM Synology NAS? Thanks

Prosi has solved this question and earned 10 coins.

Posting a reply earns you 2 coins. An accepted reply earns you 20 coins and another 10 coins for replying within 10 minutes. (Expired) What is Coin?

Enter your mobile phone number and company name for better service. Go

Hi,

To manage connections:
Select the connection you want to edit from the connection list on the left panel.
Under the Overview tab, click Manage to do any of the following:
Unlink: Remove the connection of your Synology NAS and the public cloud service.
Edit connection: If authorization of your public cloud account has been revoked or expired, you can click Edit connection to update your information and connect again.
Is this answer helpful?
Enrico Vanzetto Lv3Posted 12 Jun 2024 19:11
  
Hi, these devices are in the same subnet of your clients that you want to block access? I suggest to create a vlan for these networking devices and create an application policy that deny traffic from local clients (or some of them) to these devices.
fuadmahbubun Lv1Posted 13 Jun 2024 09:14
  
Hi, you may create at lease two policy,
1. create policy that allow source address endpoints to destination address alicloud and Synology NAS, put the police on the top.
2. Create policy that deny from source address of endpoint to destination address all. put the policy under synology policy.
Prosi Lv2Posted 13 Jun 2024 14:00
  
Hi,

To manage connections:
Select the connection you want to edit from the connection list on the left panel.
Under the Overview tab, click Manage to do any of the following:
Unlink: Remove the connection of your Synology NAS and the public cloud service.
Edit connection: If authorization of your public cloud account has been revoked or expired, you can click Edit connection to update your information and connect again.
Farina Ahmed Posted 14 Jun 2024 17:23
  
Implement filtering based on identifiable attributes unique to these devices. For Alicloud servers, you can filter by IP address ranges associated with Alibaba Cloud, which are publicly documented and can be integrated into your network policy rules. For DSM Synology NAS devices, you can use device-specific characteristics such as MAC address prefixes unique to Synology or specific OS fingerprints. By creating exclusion rules in your policy that recognize and bypass these attributes, you can effectively exclude Alicloud servers and DSM Synology NAS devices from the endpoint policy enforcement.

I Can Help:

Change

Moderator on This Board

0
2
4

Started Topics

Followers

Follow

67
16
3

Started Topics

Followers

Follow

3
3
3

Started Topics

Followers

Follow

1
131
3

Started Topics

Followers

Follow

Board Leaders