安全响应
<p class="shortdesc"></p>
<section><div class="tasklabel"><h2 class="doc-tairway">操作步骤</h2></div><ol class="ol steps"><li class="li step stepexpand">
<span class="ph cmd">登录<a class="xref" href="https://www.ocftcloud.com/console/microApp/psc/overview" target="_blank">PSC控制台。</a>。</span>
</li><li class="li step stepexpand">
<span class="ph cmd">在<span class="ph uicontrol">概览</span>页面,点击<span class="ph uicontrol">安全风险</span>板块的<span class="ph uicontrol">管理</span>。</span>
</li><li class="li step stepexpand">
<span class="ph cmd">在<span class="ph uicontrol">安全首页</span>页面,选择<span class="ph uicontrol">Linux</span>或者<span class="ph uicontrol">Windows</span>页签,点击<span class="ph uicontrol">安全响应</span>。</span>
<div class="itemgroup info">
<div class="p">
<div class="note note note_note"><span class="note__title">说明:</span> Linux与windows操作类似,本文以Linux为例描述。</div>
</div>
<div class="p"><span class="ph uicontrol">安全响应</span>包括的功能如下表。<table class="table" id="psc_0023__table_wfd_wgv_t5b"><caption></caption><colgroup><col><col></colgroup><tbody class="tbody">
<tr class="row">
<td class="entry"><strong class="ph b">功能</strong></td>
<td class="entry"><strong class="ph b">说明</strong></td>
</tr>
<tr class="row">
<td class="entry">
<p class="p">网络封停</p>
</td>
<td class="entry">
<p class="p">展示暴力破解、异常登录告警导致的网络封停事件记录。点击“解封”,可对事件进行处置,手动解封。</p>
</td>
</tr>
<tr class="row">
<td class="entry">
<p class="p">文件隔离</p>
</td>
<td class="entry">
<p class="p">展示后门检测、
Web后门事件告警导致的文件隔离事件记录。可对事件进行处置,如还原、还原并加白、删除等操作。</p>
</td>
</tr>
<tr class="row">
<td class="entry">
<p class="p">进程阻断</p>
</td>
<td class="entry">
<p class="p">展示本地提权、反弹shell事件告警导致的进程阻断事件记录,包括手动阻断和自动阻断方式。</p>
</td>
</tr>
<tr class="row">
<td class="entry">
<p class="p">自动响应</p>
</td>
<td class="entry">
<p class="p">自动响应页面为各模块自动响应能力的开关及规则配置。</p>
</td>
</tr>
</tbody></table></div>
</div>
</li></ol></section>
提交成功!非常感谢您的反馈,我们会继续努力做到更好!