Access control
After creating a load balancer, you can implement access control at the instance level by configuring an ACL or associating security groups with the subnet where the load balancer resides.
Note: Pinging the load balancer Intranet IP or bound EIP will be responded by the load balancer cluster without forwarding to real servers, and is not subject to the access control to ACL or security group.
BLB supports ACL
You can realize the access control at the load balancer instance level by configuring configure rules in the ACL corresponding to the subnet where the load balancer is located. For ACL usage, refer to ACL Operation Guide.
Operation steps
- Log in to the Baidu AI Cloud Platform, go to Products & Services > Baidu Load Balance (BLB), and click on the BLB name to access the Instance Details page.
- Activating the ACL support feature on the BLB Instance Details page ensures that the ACL rules associated with the subnet where the load balancer is deployed will be applied to the BLB instance.
- Configure corresponding rules in the ACL corresponding to the subnet where the load balancer is located.

BLB supports security group
You can associate and bind the security group to the corresponding load balancer instance, so that the load balancer instance can implement the network access control function according to the security group rule settings.
For security group operations, refer to Security Group Document.
Prerequisites
Before associating a load balancer instance with a security group, verify the following information:
- You must have successfully created a load balancer instance beforehand.
- A load balancer instance can be associated with one or more security groups based on service requirements, with each load balancer supporting a maximum of 10 security groups.
- When associating a load balancer instance with a security group, both the target security group and the load balancer must reside within the same virtual private cloud.
Operation steps
- Log in to the Baidu AI Cloud Platform, go to Products & Services > Baidu Load Balance (BLB), and click on the BLB name to access the Instance Details page.
- In the left navigation bar, click on Security Group and select the security group you want to associate.
- Once a security group is associated, you can view the currently applied security group rules.

Description:
- For models Standard IV and above, the security group bound to the real server will not block BLB traffic, allowing communication between BLB and BCC by default.
- For models Standard III and below, BLB traffic will be controlled by the BCC security groups.
