Overview

Last updated: 2024-03-26 14:28:42

Tencent Cloud offers network infrastructure and security services to ensure your business runs securely, efficiently, and flexibly.

Encrypted Login

Tencent Cloud provides two encrypted login methods: Password Login and SSH Key Login. Users can choose either method to securely connect to their cloud server. Please note that Windows instances do not support SSH Key Login.

Network access

Tencent Cloud services can be accessed through Internet Access or Private Network Access.
Internet Access: Internet access is a service provided by Tencent Cloud for public data transfer between instances. Instances are assigned public IP addresses to enable communication with other computers on the network.
Private network access: used to provide Local Area Network (LAN) service. Tencent Cloud assigns resources with private IP addresses to allow a free private network communication in the same region.

Network Environment

Tencent Cloud's network environments can be divided into: Classic Network and Virtual Private Cloud (VPC).
Classic Network: The Classic Network is a public network resource pool for all Tencent Cloud users. It is suitable for users who are new to Tencent Cloud and just getting started.
Private Network (VPC): A Private Network is a logically isolated network space in Tencent Cloud that you can customize. Instances within a VPC can be launched in predefined, custom IP ranges, ensuring isolation from other users. This is suitable for users familiar with network management.

Security Group

Security Group is a virtual firewall with stateful packet filtering capabilities, used to configure network access control for single or multiple cloud servers. It is an essential network security isolation measure provided by Tencent Cloud. You can use the following methods to control access permissions for your instances:
Create multiple security groups and specify different rules for them.
Associate one or more security groups with each of your CVM instances. These security groups control traffic to your instances and the resources your instances can access.
Configure your security groups to allow only the specified IP addresses or security groups to access your instances.

Elastic IP (EIP)

Elastic IP (EIP) is a fixed public IP address that can be independently purchased and owned within a specific region. We recommend using Elastic IPs in the following scenarios:
An instance may crash for unforeseeable reasons, and the failover instance needs to use the same IP address to provide uninterrupted service.
An instance does not have a public IP address but still needs a static IP address.

ENIs

The Elastic Network Interface (ENI) is a flexible network interface that can be bound to cloud servers within a private network and freely migrated between multiple servers. ENIs are highly beneficial for configuring and managing networks and building highly reliable network solutions.

Cloud Workload Protection

Host Security leverages Tencent Security's extensive threat data and machine learning to provide users with security protection services such as hacker intrusion detection and vulnerability risk alerts. Key features include password cracking interception, remote login reminders, trojan file detection, and high-risk vulnerability detection. These capabilities address the primary network security risks faced by servers, helping businesses build a robust server security defense system and prevent data breaches.

Anti-DDoS Basic

Anti-DDoS Basic is a free basic DDoS protection service provided by Tencent Cloud for resources such as cloud servers and load balancers, meeting daily security operation requirements. Tencent Cloud dynamically adjusts the blocking threshold based on the user's security reputation status. Anti-DDoS Basic is enabled by default, monitoring network traffic in real-time, initiating immediate cleansing upon detecting an attack, and providing second-level protection for public IPs on Tencent Cloud.