{"id":4206,"date":"2020-02-25T14:15:41","date_gmt":"2020-02-25T07:15:41","guid":{"rendered":"https:\/\/tino.vn\/?post_type=ht_kb&#038;p=4206"},"modified":"2020-02-25T14:15:41","modified_gmt":"2020-02-25T07:15:41","slug":"firewall-tuong-lua-la-gi","status":"publish","type":"ht_kb","link":"https:\/\/tino.vn\/blog\/docs\/firewall-tuong-lua-la-gi\/","title":{"rendered":"Firewall (T\u01b0\u1eddng l\u1eeda) l\u00e0 g\u00ec?"},"content":{"rendered":"<h2 id=\"Firewall_(T\u01b0\u1eddng_l\u1eeda)_l\u00e0_g\u00ec?\">Firewall (T\u01b0\u1eddng l\u1eeda) l\u00e0 g\u00ec?<\/h2>\n<div>T\u01b0\u1eddng l\u1eeda l\u00e0 m\u1ed9t h\u1ec7 th\u1ed1ng b\u1ea3o m\u1eadt theo d\u00f5i v\u00e0 ki\u1ec3m so\u00e1t l\u01b0u l\u01b0\u1ee3ng m\u1ea1ng d\u1ef1a tr\u00ean m\u1ed9t b\u1ed9 quy t\u1eafc b\u1ea3o m\u1eadt.\u00a0T\u01b0\u1eddng l\u1eeda th\u01b0\u1eddng ng\u1ed3i gi\u1eefa m\u1ed9t m\u1ea1ng \u0111\u00e1ng tin c\u1eady v\u00e0 m\u1ed9t m\u1ea1ng kh\u00f4ng tin c\u1eady;\u00a0th\u00f4ng th\u01b0\u1eddng, m\u1ea1ng kh\u00f4ng tin c\u1eady l\u00e0 Internet.\u00a0V\u00ed d\u1ee5, c\u00e1c m\u1ea1ng v\u0103n ph\u00f2ng th\u01b0\u1eddng s\u1eed d\u1ee5ng t\u01b0\u1eddng l\u1eeda \u0111\u1ec3 b\u1ea3o v\u1ec7 m\u1ea1ng c\u1ee7a h\u1ecd kh\u1ecfi c\u00e1c m\u1ed1i \u0111e d\u1ecda tr\u1ef1c tuy\u1ebfn.<\/div>\n<div><img decoding=\"async\" src=\"https:\/\/www.cloudflare.com\/resources\/images\/slt3lc6tev37\/5wfmLijgWmcfy3AqBkmYKc\/7d52f8a30aec966d734bf17a0f14573a\/what-is-a-firewall.svg\" alt=\"\" title=\"\"><\/div>\n<div>T\u01b0\u1eddng l\u1eeda quy\u1ebft \u0111\u1ecbnh c\u00f3 cho ph\u00e9p l\u01b0u l\u01b0\u1ee3ng \u0111\u1ebfn v\u00e0 \u0111i \u0111i qua hay kh\u00f4ng.\u00a0Ch\u00fang c\u00f3 th\u1ec3 \u0111\u01b0\u1ee3c t\u00edch h\u1ee3p v\u00e0o ph\u1ea7n c\u1ee9ng, ph\u1ea7n m\u1ec1m ho\u1eb7c k\u1ebft h\u1ee3p c\u1ea3 hai.\u00a0Thu\u1eadt ng\u1eef &#8216;t\u01b0\u1eddng l\u1eeda&#8217; th\u1ef1c s\u1ef1 \u0111\u01b0\u1ee3c m\u01b0\u1ee3n t\u1eeb m\u1ed9t th\u1ef1c t\u1ebf x\u00e2y d\u1ef1ng x\u00e2y d\u1ef1ng c\u00e1c b\u1ee9c t\u01b0\u1eddng \u1edf gi\u1eefa ho\u1eb7c th\u00f4ng qua gi\u1eefa c\u00e1c t\u00f2a nh\u00e0 \u0111\u01b0\u1ee3c thi\u1ebft k\u1ebf \u0111\u1ec3 ch\u1ee9a m\u1ed9t \u0111\u00e1m ch\u00e1y.\u00a0T\u01b0\u01a1ng t\u1ef1, t\u01b0\u1eddng l\u1eeda m\u1ea1ng ho\u1ea1t \u0111\u1ed9ng \u0111\u1ec3 ch\u1ee9a c\u00e1c m\u1ed1i \u0111e d\u1ecda tr\u1ef1c tuy\u1ebfn.<\/div>\n<h2 id=\"T\u1ea1i_sao_n\u00ean_s\u1eed_d\u1ee5ng_t\u01b0\u1eddng_l\u1eeda?\">T\u1ea1i sao n\u00ean s\u1eed d\u1ee5ng t\u01b0\u1eddng l\u1eeda?<\/h2>\n<div>Tr\u01b0\u1eddng h\u1ee3p s\u1eed d\u1ee5ng ch\u00ednh cho t\u01b0\u1eddng l\u1eeda l\u00e0 b\u1ea3o m\u1eadt.\u00a0T\u01b0\u1eddng l\u1eeda c\u00f3 th\u1ec3 ch\u1eb7n l\u01b0u l\u01b0\u1ee3ng \u0111\u1ed9c h\u1ea1i \u0111\u1ebfn tr\u01b0\u1edbc khi n\u00f3 truy c\u1eadp m\u1ea1ng, c\u0169ng nh\u01b0 ng\u0103n th\u00f4ng tin nh\u1ea1y c\u1ea3m r\u1eddi kh\u1ecfi m\u1ea1ng.<\/div>\n<div>T\u01b0\u1eddng l\u1eeda c\u0169ng c\u00f3 th\u1ec3 \u0111\u01b0\u1ee3c s\u1eed d\u1ee5ng \u0111\u1ec3 l\u1ecdc n\u1ed9i dung.\u00a0V\u00ed d\u1ee5, m\u1ed9t tr\u01b0\u1eddng h\u1ecdc c\u00f3 th\u1ec3 \u0111\u1ecbnh c\u1ea5u h\u00ecnh t\u01b0\u1eddng l\u1eeda \u0111\u1ec3 ng\u0103n ng\u01b0\u1eddi d\u00f9ng tr\u00ean m\u1ea1ng c\u1ee7a h\u1ecd truy c\u1eadp t\u00e0i li\u1ec7u ng\u01b0\u1eddi l\u1edbn.\u00a0T\u01b0\u01a1ng t\u1ef1, \u1edf m\u1ed9t s\u1ed1 qu\u1ed1c gia, ch\u00ednh ph\u1ee7 \u0111i\u1ec1u h\u00e0nh m\u1ed9t t\u01b0\u1eddng l\u1eeda c\u00f3 th\u1ec3 ng\u0103n m\u1ecdi ng\u01b0\u1eddi trong qu\u1ed1c gia \u0111\u00f3 truy c\u1eadp v\u00e0o m\u1ed9t s\u1ed1 ph\u1ea7n nh\u1ea5t \u0111\u1ecbnh c\u1ee7a Internet.<\/div>\n<div>B\u00e0i vi\u1ebft n\u00e0y s\u1ebd t\u1eadp trung v\u00e0o t\u01b0\u1eddng l\u1eeda \u0111\u01b0\u1ee3c c\u1ea5u h\u00ecnh \u0111\u1ec3 b\u1ea3o m\u1eadt, trong \u0111\u00f3 c\u00f3 m\u1ed9t s\u1ed1 lo\u1ea1i.<\/div>\n<h2 id=\"C\u00e1c_lo\u1ea1i_t\u01b0\u1eddng_l\u1eeda_kh\u00e1c_nhau_l\u00e0_g\u00ec?\">C\u00e1c lo\u1ea1i t\u01b0\u1eddng l\u1eeda kh\u00e1c nhau l\u00e0 g\u00ec?<\/h2>\n<h4 id=\"T\u01b0\u1eddng_l\u1eeda_d\u1ef1a_tr\u00ean_proxy:\">T\u01b0\u1eddng l\u1eeda d\u1ef1a tr\u00ean proxy:<\/h4>\n<div>\u0110\u00e2y l\u00e0 c\u00e1c proxy * n\u1eb1m \u1edf gi\u1eefa\u00a0<a href=\"https:\/\/www.cloudflare.com\/learning\/serverless\/glossary\/client-side-vs-server-side\/\" rel=\"nofollow noopener\" target=\"_blank\">m\u00e1y kh\u00e1ch v\u00e0 m\u00e1y ch\u1ee7<\/a>\u00a0.\u00a0Kh\u00e1ch h\u00e0ng k\u1ebft n\u1ed1i v\u1edbi t\u01b0\u1eddng l\u1eeda v\u00e0 t\u01b0\u1eddng l\u1eeda ki\u1ec3m tra c\u00e1c g\u00f3i g\u1eedi \u0111i, sau \u0111\u00f3 n\u00f3 s\u1ebd t\u1ea1o k\u1ebft n\u1ed1i \u0111\u1ebfn ng\u01b0\u1eddi nh\u1eadn d\u1ef1 \u0111\u1ecbnh (m\u00e1y ch\u1ee7 web).\u00a0T\u01b0\u01a1ng t\u1ef1, khi m\u00e1y ch\u1ee7 web c\u1ed1 g\u1eafng g\u1eedi ph\u1ea3n h\u1ed3i \u0111\u1ebfn m\u00e1y kh\u00e1ch, t\u01b0\u1eddng l\u1eeda s\u1ebd ch\u1eb7n y\u00eau c\u1ea7u \u0111\u00f3, ki\u1ec3m tra c\u00e1c g\u00f3i v\u00e0 sau \u0111\u00f3 g\u1eedi ph\u1ea3n h\u1ed3i \u0111\u00f3 trong m\u1ed9t k\u1ebft n\u1ed1i ri\u00eang gi\u1eefa t\u01b0\u1eddng l\u1eeda v\u00e0 m\u00e1y kh\u00e1ch.\u00a0T\u01b0\u1eddng l\u1eeda d\u1ef1a tr\u00ean proxy ng\u0103n ch\u1eb7n hi\u1ec7u qu\u1ea3 k\u1ebft n\u1ed1i tr\u1ef1c ti\u1ebfp gi\u1eefa m\u00e1y kh\u00e1ch v\u00e0 m\u00e1y ch\u1ee7.<\/div>\n<div>M\u1ed9t t\u01b0\u1eddng l\u1eeda d\u1ef1a tr\u00ean proxy gi\u1ed1ng nh\u01b0 m\u1ed9t bouncer t\u1ea1i m\u1ed9t qu\u00e1n bar.\u00a0Bouncer n\u00e0y d\u1eebng kh\u00e1ch tr\u01b0\u1edbc khi h\u1ecd v\u00e0o qu\u00e1n bar \u0111\u1ec3 \u0111\u1ea3m b\u1ea3o r\u1eb1ng h\u1ecd kh\u00f4ng b\u1ecb thi\u1ebfu, v\u0169 trang, ho\u1eb7c b\u1eb1ng b\u1ea5t k\u1ef3 c\u00e1ch n\u00e0o kh\u00e1c l\u00e0 m\u1ed1i \u0111e d\u1ecda cho qu\u00e1n bar v\u00e0 kh\u00e1ch h\u00e0ng quen c\u1ee7a n\u00f3.\u00a0Bouncer c\u0169ng d\u1eebng nh\u1eefng kh\u00e1ch h\u00e0ng quen tr\u00ean \u0111\u01b0\u1eddng ra \u0111\u1ec3 \u0111\u1ea3m b\u1ea3o r\u1eb1ng h\u1ecd c\u00f3 m\u1ed9t c\u00e1ch an to\u00e0n \u0111\u1ec3 v\u1ec1 nh\u00e0 v\u00e0 kh\u00f4ng c\u00f3 k\u1ebf ho\u1ea1ch u\u1ed1ng r\u01b0\u1ee3u v\u00e0 l\u00e1i xe.<\/div>\n<div>Nh\u01b0\u1ee3c \u0111i\u1ec3m c\u1ee7a vi\u1ec7c c\u00f3 m\u1ed9t bouncer t\u1ea1i qu\u00e1n bar l\u00e0 khi r\u1ea5t nhi\u1ec1u ng\u01b0\u1eddi \u0111ang c\u1ed1 g\u1eafng v\u00e0o ho\u1eb7c r\u1eddi kh\u1ecfi qu\u00e1n bar c\u00f9ng m\u1ed9t l\u00fac, s\u1ebd c\u00f3 m\u1ed9t h\u00e0ng d\u00e0i v\u00e0 m\u1ed9t v\u00e0i ng\u01b0\u1eddi s\u1ebd g\u1eb7p ph\u1ea3i s\u1ef1 ch\u1eadm tr\u1ec5.\u00a0T\u01b0\u01a1ng t\u1ef1, m\u1ed9t nh\u01b0\u1ee3c \u0111i\u1ec3m l\u1edbn c\u1ee7a t\u01b0\u1eddng l\u1eeda d\u1ef1a tr\u00ean proxy l\u00e0 n\u00f3 c\u00f3 th\u1ec3 g\u00e2y ra\u00a0<a href=\"https:\/\/www.cloudflare.com\/learning\/performance\/glossary\/what-is-latency\/\" rel=\"nofollow noopener\" target=\"_blank\">\u0111\u1ed9 tr\u1ec5<\/a>\u00a0, \u0111\u1eb7c bi\u1ec7t l\u00e0 trong th\u1eddi gian l\u01b0u l\u01b0\u1ee3ng truy c\u1eadp l\u1edbn.<\/div>\n<div>* Proxy l\u00e0 m\u1ed9t m\u00e1y t\u00ednh ho\u1ea1t \u0111\u1ed9ng nh\u01b0 m\u1ed9t c\u1ed5ng gi\u1eefa m\u1ea1ng c\u1ee5c b\u1ed9 v\u00e0 m\u1ea1ng l\u1edbn h\u01a1n, ch\u1eb3ng h\u1ea1n nh\u01b0 Internet.<\/div>\n<h4 id=\"T\u01b0\u1eddng_l\u1eeda_nh\u00e0_n\u01b0\u1edbc:\">T\u01b0\u1eddng l\u1eeda nh\u00e0 n\u01b0\u1edbc:<\/h4>\n<div>Trong khoa h\u1ecdc m\u00e1y t\u00ednh, \u1ee9ng d\u1ee5ng &#8216;stateful&#8217; l\u00e0 \u1ee9ng d\u1ee5ng l\u01b0u d\u1eef li\u1ec7u t\u1eeb c\u00e1c s\u1ef1 ki\u1ec7n v\u00e0 t\u01b0\u01a1ng t\u00e1c tr\u01b0\u1edbc \u0111\u00f3.\u00a0T\u01b0\u1eddng l\u1eeda tr\u1ea1ng th\u00e1i l\u01b0u th\u00f4ng tin li\u00ean quan \u0111\u1ebfn c\u00e1c k\u1ebft n\u1ed1i m\u1edf v\u00e0 s\u1eed d\u1ee5ng th\u00f4ng tin n\u00e0y \u0111\u1ec3 ph\u00e2n t\u00edch l\u01b0u l\u01b0\u1ee3ng \u0111\u1ebfn v\u00e0 \u0111i, thay v\u00ec ki\u1ec3m tra t\u1eebng g\u00f3i.\u00a0B\u1edfi v\u00ec h\u1ecd kh\u00f4ng ki\u1ec3m tra m\u1ecdi g\u00f3i tin, t\u01b0\u1eddng l\u1eeda tr\u1ea1ng th\u00e1i nhanh h\u01a1n t\u01b0\u1eddng l\u1eeda d\u1ef1a tr\u00ean proxy.<\/div>\n<div>T\u01b0\u1eddng l\u1eeda nh\u00e0 n\u01b0\u1edbc d\u1ef1a v\u00e0o r\u1ea5t nhi\u1ec1u b\u1ed1i c\u1ea3nh khi \u0111\u01b0a ra quy\u1ebft \u0111\u1ecbnh.\u00a0V\u00ed d\u1ee5: n\u1ebfu t\u01b0\u1eddng l\u1eeda ghi l\u1ea1i c\u00e1c g\u00f3i g\u1eedi \u0111i tr\u00ean m\u1ed9t k\u1ebft n\u1ed1i y\u00eau c\u1ea7u m\u1ed9t lo\u1ea1i ph\u1ea3n h\u1ed3i nh\u1ea5t \u0111\u1ecbnh, n\u00f3 s\u1ebd ch\u1ec9 cho ph\u00e9p c\u00e1c g\u00f3i \u0111\u1ebfn tr\u00ean k\u1ebft n\u1ed1i \u0111\u00f3 n\u1ebfu ch\u00fang cung c\u1ea5p lo\u1ea1i ph\u1ea3n h\u1ed3i \u0111\u01b0\u1ee3c y\u00eau c\u1ea7u.<\/div>\n<div>T\u01b0\u1eddng l\u1eeda c\u00f3 tr\u1ea1ng th\u00e1i c\u0169ng c\u00f3 th\u1ec3 b\u1ea3o v\u1ec7 c\u00e1c c\u1ed5ng * b\u1eb1ng c\u00e1ch gi\u1eef t\u1ea5t c\u1ea3 ch\u00fang \u0111\u00f3ng tr\u1eeb khi c\u00e1c g\u00f3i \u0111\u1ebfn y\u00eau c\u1ea7u quy\u1ec1n truy c\u1eadp v\u00e0o m\u1ed9t c\u1ed5ng c\u1ee5 th\u1ec3.\u00a0\u0110i\u1ec1u n\u00e0y c\u00f3 th\u1ec3 gi\u1ea3m thi\u1ec3u m\u1ed9t cu\u1ed9c t\u1ea5n c\u00f4ng \u0111\u01b0\u1ee3c g\u1ecdi l\u00e0 qu\u00e9t c\u1ed5ng.<\/div>\n<div>M\u1ed9t l\u1ed7 h\u1ed5ng \u0111\u01b0\u1ee3c bi\u1ebft \u0111\u1ebfn li\u00ean quan \u0111\u1ebfn t\u01b0\u1eddng l\u1eeda nh\u00e0 n\u01b0\u1edbc l\u00e0 ch\u00fang c\u00f3 th\u1ec3 b\u1ecb thao t\u00fang b\u1eb1ng c\u00e1ch l\u1eeba kh\u00e1ch h\u00e0ng y\u00eau c\u1ea7u m\u1ed9t lo\u1ea1i th\u00f4ng tin nh\u1ea5t \u0111\u1ecbnh.\u00a0Khi kh\u00e1ch h\u00e0ng y\u00eau c\u1ea7u ph\u1ea3n h\u1ed3i \u0111\u00f3, k\u1ebb t\u1ea5n c\u00f4ng c\u00f3 th\u1ec3 g\u1eedi c\u00e1c g\u00f3i \u0111\u1ed9c h\u1ea1i ph\u00f9 h\u1ee3p v\u1edbi ti\u00eau ch\u00ed \u0111\u00f3 th\u00f4ng qua t\u01b0\u1eddng l\u1eeda.\u00a0V\u00ed d\u1ee5: c\u00e1c trang web kh\u00f4ng an to\u00e0n c\u00f3 th\u1ec3 s\u1eed d\u1ee5ng m\u00e3 JavaScript \u0111\u1ec3 t\u1ea1o c\u00e1c lo\u1ea1i y\u00eau c\u1ea7u gi\u1ea3 m\u1ea1o n\u00e0y t\u1eeb tr\u00ecnh duy\u1ec7t web.<\/div>\n<div>* C\u1ed5ng m\u1ea1ng l\u00e0 v\u1ecb tr\u00ed g\u1eedi th\u00f4ng tin;\u00a0n\u00f3 kh\u00f4ng ph\u1ea3i l\u00e0 m\u1ed9t n\u01a1i v\u1eadt l\u00fd m\u00e0 l\u00e0 m\u1ed9t \u0111i\u1ec3m cu\u1ed1i truy\u1ec1n th\u00f4ng.<\/div>\n<h4 id=\"T\u01b0\u1eddng_l\u1eeda_th\u1ebf_h\u1ec7_ti\u1ebfp_theo_(NGFW):\">T\u01b0\u1eddng l\u1eeda th\u1ebf h\u1ec7 ti\u1ebfp theo (NGFW):<\/h4>\n<div>\u0110\u00e2y l\u00e0 nh\u1eefng t\u01b0\u1eddng l\u1eeda c\u00f3 kh\u1ea3 n\u0103ng c\u1ee7a t\u01b0\u1eddng l\u1eeda truy\u1ec1n th\u1ed1ng nh\u01b0ng c\u0169ng s\u1eed d\u1ee5ng m\u1ed9t lo\u1ea1t c\u00e1c t\u00ednh n\u0103ng \u0111\u01b0\u1ee3c th\u00eam v\u00e0o \u0111\u1ec3 gi\u1ea3i quy\u1ebft c\u00e1c m\u1ed1i \u0111e d\u1ecda tr\u00ean c\u00e1c l\u1edbp kh\u00e1c c\u1ee7a\u00a0<a href=\"https:\/\/www.cloudflare.com\/learning\/ddos\/glossary\/open-systems-interconnection-model-osi\/\" rel=\"nofollow noopener\" target=\"_blank\">M\u00f4 h\u00ecnh OSI<\/a>\u00a0.\u00a0M\u1ed9t s\u1ed1 t\u00ednh n\u0103ng d\u00e0nh ri\u00eang cho NGFW bao g\u1ed3m:<\/div>\n<div>WAFs gi\u00fap b\u1ea3o v\u1ec7 c\u00e1c \u1ee9ng d\u1ee5ng web kh\u1ecfi ng\u01b0\u1eddi d\u00f9ng \u0111\u1ed9c h\u1ea1i.\u00a0WAF gi\u00fap b\u1ea3o v\u1ec7 c\u00e1c \u1ee9ng d\u1ee5ng web b\u1eb1ng c\u00e1ch l\u1ecdc v\u00e0 gi\u00e1m s\u00e1t\u00a0l\u01b0u l\u01b0\u1ee3ng\u00a0<a href=\"https:\/\/www.cloudflare.com\/learning\/ddos\/glossary\/hypertext-transfer-protocol-http\/\" rel=\"nofollow noopener\" target=\"_blank\">HTTP<\/a>\u00a0gi\u1eefa \u1ee9ng d\u1ee5ng web v\u00e0 Internet.\u00a0N\u00f3 th\u01b0\u1eddng b\u1ea3o v\u1ec7 c\u00e1c \u1ee9ng d\u1ee5ng web t\u1eeb c\u00e1c cu\u1ed9c t\u1ea5n c\u00f4ng nh\u01b0\u00a0<a href=\"https:\/\/www.cloudflare.com\/learning\/security\/threats\/cross-site-request-forgery\/\" rel=\"nofollow noopener\" target=\"_blank\">cross-site gi\u1ea3 m\u1ea1o<\/a>\u00a0,\u00a0<a href=\"https:\/\/www.cloudflare.com\/learning\/security\/threats\/cross-site-scripting\/\" rel=\"nofollow noopener\" target=\"_blank\">cross-site-scripting (XSS)<\/a>\u00a0, t\u1eadp tin bao g\u1ed3m, v\u00e0\u00a0<a href=\"https:\/\/www.cloudflare.com\/learning\/security\/threats\/sql-injection\/\" rel=\"nofollow noopener\" target=\"_blank\">SQL injection<\/a>\u00a0, trong s\u1ed1 nh\u1eefng ng\u01b0\u1eddi kh\u00e1c.<img decoding=\"async\" src=\"https:\/\/tino.vn\/blog\/wp-content\/uploads\/2020\/02\/waf.png\" alt=\"\" title=\"\"><\/div>\n<div>B\u1eb1ng c\u00e1ch tri\u1ec3n khai WAF tr\u01b0\u1edbc m\u1ed9t \u1ee9ng d\u1ee5ng web, m\u1ed9t t\u1ea5m khi\u00ean \u0111\u01b0\u1ee3c \u0111\u1eb7t gi\u1eefa \u1ee9ng d\u1ee5ng web v\u00e0 Internet.\u00a0M\u1eb7c d\u00f9 t\u01b0\u1eddng l\u1eeda d\u1ef1a tr\u00ean proxy b\u1ea3o v\u1ec7 danh t\u00ednh c\u1ee7a m\u00e1y kh\u00e1ch b\u1eb1ng c\u00e1ch s\u1eed d\u1ee5ng m\u1ed9t trung gian, WAF l\u00e0 m\u1ed9t lo\u1ea1i\u00a0<a href=\"https:\/\/www.cloudflare.com\/learning\/cdn\/glossary\/reverse-proxy\/\" rel=\"nofollow noopener\" target=\"_blank\">proxy ng\u01b0\u1ee3c<\/a>\u00a0, b\u1ea3o v\u1ec7 m\u00e1y ch\u1ee7 kh\u1ecfi b\u1ecb ph\u01a1i nhi\u1ec5m b\u1eb1ng c\u00e1ch cho kh\u00e1ch h\u00e0ng \u0111i qua WAF tr\u01b0\u1edbc khi \u0111\u1ebfn m\u00e1y ch\u1ee7.<\/div>\n<div>WAF ho\u1ea1t \u0111\u1ed9ng th\u00f4ng qua m\u1ed9t b\u1ed9 quy t\u1eafc th\u01b0\u1eddng \u0111\u01b0\u1ee3c g\u1ecdi l\u00e0 ch\u00ednh s\u00e1ch.\u00a0C\u00e1c ch\u00ednh s\u00e1ch n\u00e0y nh\u1eb1m b\u1ea3o v\u1ec7 ch\u1ed1ng l\u1ea1i c\u00e1c l\u1ed7 h\u1ed5ng trong \u1ee9ng d\u1ee5ng b\u1eb1ng c\u00e1ch l\u1ecdc ra l\u01b0u l\u01b0\u1ee3ng \u0111\u1ed9c h\u1ea1i.\u00a0Gi\u00e1 tr\u1ecb c\u1ee7a WAF m\u1ed9t ph\u1ea7n \u0111\u1ebfn t\u1eeb t\u1ed1c \u0111\u1ed9 v\u00e0 d\u1ec5 d\u00e0ng th\u1ef1c hi\u1ec7n s\u1eeda \u0111\u1ed5i ch\u00ednh s\u00e1ch, cho ph\u00e9p ph\u1ea3n \u1ee9ng nhanh h\u01a1n v\u1edbi c\u00e1c vect\u01a1 t\u1ea5n c\u00f4ng kh\u00e1c nhau;\u00a0trong\u00a0<a href=\"https:\/\/www.cloudflare.com\/learning\/ddos\/what-is-a-ddos-attack\/\" rel=\"nofollow noopener\" target=\"_blank\">cu\u1ed9c t\u1ea5n c\u00f4ng DDoS<\/a>\u00a0, vi\u1ec7c gi\u1edbi h\u1ea1n t\u1ed1c \u0111\u1ed9 c\u00f3 th\u1ec3 \u0111\u01b0\u1ee3c th\u1ef1c hi\u1ec7n nhanh ch\u00f3ng b\u1eb1ng c\u00e1ch s\u1eeda \u0111\u1ed5i c\u00e1c ch\u00ednh s\u00e1ch WAF.\u00a0C\u00e1c s\u1ea3n ph\u1ea9m WAF th\u01b0\u01a1ng m\u1ea1i nh\u01b0\u00a0<a href=\"https:\/\/www.cloudflare.com\/waf\/\" rel=\"nofollow noopener\" target=\"_blank\">T\u01b0\u1eddng l\u1eeda \u1ee9ng d\u1ee5ng web c\u1ee7a Cloudflare<\/a>\u00a0b\u1ea3o v\u1ec7 h\u00e0ng tri\u1ec7u \u1ee9ng d\u1ee5ng web kh\u1ecfi c\u00e1c cu\u1ed9c t\u1ea5n c\u00f4ng m\u1ed7i ng\u00e0y.<\/div>\n","protected":false},"excerpt":{"rendered":"<p>Firewall (T\u01b0\u1eddng l\u1eeda) l\u00e0 g\u00ec? T\u01b0\u1eddng l\u1eeda l\u00e0 m\u1ed9t h\u1ec7 th\u1ed1ng b\u1ea3o m\u1eadt theo d\u00f5i v\u00e0 ki\u1ec3m so\u00e1t l\u01b0u l\u01b0\u1ee3ng m\u1ea1ng d\u1ef1a tr\u00ean m\u1ed9t b\u1ed9 quy t\u1eafc b\u1ea3o m\u1eadt.\u00a0T\u01b0\u1eddng l\u1eeda th\u01b0\u1eddng ng\u1ed3i gi\u1eefa m\u1ed9t m\u1ea1ng \u0111\u00e1ng tin c\u1eady v\u00e0 m\u1ed9t m\u1ea1ng kh\u00f4ng tin c\u1eady;\u00a0th\u00f4ng th\u01b0\u1eddng, m\u1ea1ng kh\u00f4ng tin c\u1eady l\u00e0 Internet.\u00a0V\u00ed d\u1ee5, c\u00e1c m\u1ea1ng v\u0103n [&hellip;]<\/p>\n","protected":false},"author":4,"featured_media":16424,"menu_order":0,"comment_status":"closed","ping_status":"closed","template":"","format":"standard","meta":{"footnotes":""},"tags":[],"ht_kb_category":[5164],"class_list":["post-4206","ht_kb","type-ht_kb","status-publish","format-standard","has-post-thumbnail","hentry","ht_kb_category-cloudflare"],"_links":{"self":[{"href":"https:\/\/tino.vn\/blog\/wp-json\/wp\/v2\/ht_kb\/4206","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/tino.vn\/blog\/wp-json\/wp\/v2\/ht_kb"}],"about":[{"href":"https:\/\/tino.vn\/blog\/wp-json\/wp\/v2\/types\/ht_kb"}],"author":[{"embeddable":true,"href":"https:\/\/tino.vn\/blog\/wp-json\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"https:\/\/tino.vn\/blog\/wp-json\/wp\/v2\/comments?post=4206"}],"version-history":[{"count":0,"href":"https:\/\/tino.vn\/blog\/wp-json\/wp\/v2\/ht_kb\/4206\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/tino.vn\/blog\/wp-json\/wp\/v2\/media\/16424"}],"wp:attachment":[{"href":"https:\/\/tino.vn\/blog\/wp-json\/wp\/v2\/media?parent=4206"}],"wp:term":[{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/tino.vn\/blog\/wp-json\/wp\/v2\/tags?post=4206"},{"taxonomy":"ht_kb_category","embeddable":true,"href":"https:\/\/tino.vn\/blog\/wp-json\/wp\/v2\/ht_kb_category?post=4206"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}