Skip to content

Commit bff99da

Browse files
committed
tweak image
1 parent bebe980 commit bff99da

File tree

1 file changed

+3
-2
lines changed

1 file changed

+3
-2
lines changed

articles/firewall/threat-intel.md

Lines changed: 3 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -13,15 +13,16 @@ ms.author: victorh
1313

1414
Threat intelligence-based filtering can be enabled for your firewall to alert and deny traffic from/to known malicious IP addresses and domains. The IP addresses and domains are sourced from the Microsoft Threat Intelligence feed. [Intelligent Security Graph](https://www.microsoft.com/en-us/security/operations/intelligence) powers Microsoft threat intelligence and is used by multiple services including Azure Security Center.
1515

16-
![Firewall threat intelligence](media/threat-intel/firewall-threat.png)
16+
17+
:::image type="content" source="media/threat-intel/firewall-threat.png" alt-text="Firewall threat intelligence" border="false":::
1718

1819
If you've enabled threat intelligence-based filtering, the associated rules are processed before any of the NAT rules, network rules, or application rules.
1920

2021
You can choose to just log an alert when a rule is triggered, or you can choose alert and deny mode.
2122

2223
By default, threat intelligence-based filtering is enabled in alert mode. You can’t turn off this feature or change the mode until the portal interface becomes available in your region.
2324

24-
![Threat intelligence based filtering portal interface](media/threat-intel/threat-intel-ui.png)
25+
:::image type="content" source="media/threat-intel/threat-intel-ui.png" alt-text="Threat intelligence based filtering portal interface":::
2526

2627
## Logs
2728

0 commit comments

Comments
 (0)