When Origin Protection is enabled, EdgeOne notifies you of the latest update of intermediate IPs of L4 proxy and site acceleration. You can sync them to the firewall rules of your origin, allowing only traffic from these IPs to your origin.
1. Log in to the EdgeOne console and choose Security > Origin Protection on the left sidebar.
2. On the page that appears, enable Origin Protection. Select the resources to bind with the intermediate IP addresses. Click OK.
Select resource: Select target resources to enable Origin Protection.
3. After Origin Protection is enabled:
You can see the current intermediate IP addresses. You can update your origin firewall rules accordingly.
You will be informed of any updates of the intermediate IP addresses. Once you confirm the updates and report your update progress, the latest ones will be applied to your associated resources.
To ensure the normal running of your business, confirm and update the intermediate IPs in the console as soon as possible after you are notified.
If the intermediate IP addresses are not updated, there may be higher latency or instability issues in case of high concurrency.
Why can't I enable Origin protection for my domain name?
Origin protection only supports domain names with security acceleration enabled.
How can I enable security acceleration for a domain name?
If your EdgeOne plan supports security acceleration, you can enable advanced protection for a specific domain name in the Enhanced configuration card under DDoS Mitigation.
Can I use origin protection for non-security acceleration resources?
No. This feature is not available if your EdgeOne plan does not support security acceleration.