Enforce Restrictions to AI/ML Services
The rapid growth of Artificial Intelligence (AI) and Machine Learning (ML) presents both opportunities and challenges in cloud environments. Unrestricted access to AI/ML services can result in data exposure, compliance issues, and inefficient resource utilization. Implementing measures to block AI and ML sites helps strengthen security, uphold regulatory requirements, and optimize cloud resources.
Blocking AI and ML sites in the cloud is crucial for safeguarding sensitive data, ensuring compliance, and optimizing cloud resources. By using Service Groups or Predefined URL Lists, organizations can enforce robust security policies. As the AI landscape evolves, continuous monitoring and updates to these policies are necessary to stay ahead of emerging threats.
Key Benefits
-
Data Security. Prevent unauthorized data exposure to external AI/ML models.
-
Regulatory Compliance. Align with policies like GDPR, HIPAA, and industry-specific regulations.
-
Resource Optimization. Restrict access to resource-intensive AI tools that may cause cloud cost spikes.
-
Content Control. Prevent access to AI-based content generation and manipulation tools that may pose security risks.
Control Access to AI/ML Sites
You can control access to AI/ML sites by either using Service Groups or configuring AI/ML domains in Predefined Lists.
Service Groups
You can block AI/ML domains by configuring Service Groups.
To create a Service Group for AI/ML Sites, refer Skyhigh Security: Create a Service Group.
Once the Service Group is created, apply a policy under the Web Policy > Policy > Application Control:
-
Navigate to Web Policy > Policy > Application Control.
- Click Add Service Groups.
- Select ArtificialIntelligence
Configure AI ML Domains in Predefined Lists
You can block AI/ML domains by configuring them under the predefined web filtering list.
-
Navigate to Web Policy > Policy > Web Filtering.
-
Click Select Criteria to Search for URL parameter string.
-
Set the Operator as is in.
-
Click Select Value > String List > AI-ML Domains.
