| CPC H04L 63/105 (2013.01) [H04L 63/20 (2013.01)] | 19 Claims |

|
1. A network security management method, comprising:
receiving configuration data that includes at least one access control policy for a network asset of a target cloud tenant, the network asset including a private network, a subnet of the private network, and a cloud instance of the subnet;
displaying a network security management interface, the network security management interface including a configuration area based on the configuration data;
determining, by processing circuitry and according to the configuration data, a network management and control unit and a first access control policy set corresponding to the network management and control unit, the network management and control unit including one or more of a private network-level management and control unit, a subnet-level management and control unit, and an instance-level management and control unit;
transmitting a policy acquisition request to a server in response to a policy viewing instruction received via the configuration area of the network security management interface, the policy acquisition request including an instance identifier of the cloud instance;
receiving a second access control policy set corresponding to the network management and control unit associated with the cloud instance; and
displaying, on the network security management interface, one or more access control policies included in the second access control policy set.
|