Review firewall activity
Monitor and analyze Package Firewall activity to understand which packages are blocked, which policies are violated, and how your development team uses open-source components.
Review firewall analysis activity
Use this tab to view a summary of recent firewall traffic. To review analysis results for a specific package version installed through the firewall, select the package name from the dropdown list. The results for that package appear after you make a selection and show why the package version failed analysis and was blocked by the firewall.
By default, Package Firewall treats unprocessed packages as failures to prevent running code that has not been analyzed. Any unprocessed package is automatically staged for processing, so the safest option is to wait until processing completes.
You can add exceptions to bypass this behavior.
A package version can fail analysis for one of the following reasons:
- It violates one or more policies. The violated policies are listed in the results.
- It’s incomplete, and the firewall isn’t configured to accept incomplete packages. This can happen when the analysis of the package hasn’t completed yet and the firewall policy specifies that incomplete packages shouldn’t be accepted.
Before you begin:
- You must have a Veracode account in the Commercial region with the Administrator, Reviewer, Submitter, Mitigation Approver, Policy Administrator, or Security Lead role for Package Firewall. Package Firewall currently doesn't support accounts in the United States Federal region.
To complete this task:
- Sign in to the Veracode Platform.
- Select Policies > Firewall.
- Select the firewall you want to monitor.
- To view the analysis overview, navigate to the Activity tab.
Review downloads through firewall
View a list of downloaded packages.
Before you begin:
- You must have a Veracode account in the Commercial region with the Administrator, Reviewer, Submitter, Mitigation Approver, Policy Administrator, or Security Lead role. Package Firewall currently doesn't support accounts in the United States Federal region.
To complete this task:
- Sign in to the Veracode Platform.
- Select Policies > Firewall.
- Select the firewall for which you want to view package downloads.
- To view download activity, navigate to the Downloads tab.