Managing Events
On the Dashboard page, you can view the protection event logs of all protected websites or of all WAF instances for a specified time range, including yesterday, today, past 3 days, past 7 days, or past 30 days. On this page, event logs are displayed by different dimensions, including the number of requests and attack types, QPS, bandwidth, response code, event distribution, top 5 attacked domain names, top 5 attack source IP addresses, top 5 attacked URLs, top 5 attack source locations, and top 5 error pages.
Related Operations
- On the Events page, you can view the blocked or logged attack events for the last 30 days.
- If you authorize WAF to access Log Tank Service (LTS), you can use the WAF logs recorded by LTS for quick and efficient real-time analysis, device O&M management, and analysis of service trends. LTS allows you to transfer logs to an Object Storage Service (OBS) bucket or Data Ingestion Service (DIS) for long-term storage.
Related Operations
Once an attack hits a WAF rule, WAF will respond to the attack immediately according to the protective action (Log only or Block) you configured for the rule and display an event on the Events page.
If you are sure that the event is a false positive, handle it as a false alarm. After an event is handled as a false alarm, WAF stops blocking corresponding type of event. No such type of event will be displayed on the Events page and you will no longer receive alarm notifications accordingly.
Related Operations
What is your overall rating for this page?
Thank you very much for your feedback. We will continue working to improve the documentation.See the reply and handling status in My Cloud VOC.
For any further questions, feel free to contact us through the chatbot.
Chatbot