the server is on Aliyun. When we dock with a third party, we give them the access address of our server. Although it is a pure interface interaction, this server is also the address where we access the background management system. Whether this will cause our business system to be exposed to each other, now the browser will enter this address and open the home page of the background, although there is a login user name as a restriction. But it"s still possible to be invaded. We have also considered using ip whitelist before, but because both customers and our technology will go up to do maintenance, we cannot exhaust ip. We have thought of using a special suffix path to open the background page, which may be safer but still not safe. I wonder if there is any good plan to prevent our internal system from being exposed?