Updated on 2026-06-08 GMT+08:00

AAD Events

Description

Event monitoring provides event data reporting, query, and alarm reporting. You can create alarm rules for both system events and custom events. When there are specified events, you will receive alarm notifications.

Namespace

SYS.DDOS

Monitored Events

Table 1 Monitored events

Event Name

ID

Severity

Description

Handling Suggestions

Impact

Blackhole events

blackHoleEvents

Major

The attack traffic exceeds the purchased AAD protection threshold.

For details, see Huawei Cloud Blackhole Policy.

Services may be affected.

Recovery

cancelBlackHole

Warning

The AAD instance recovers from the blackhole status.

No operation is required.

Service recovery

Domain name scheduling event

domainNameDispatchEvents

Major

The high-defense CNAME corresponding to the domain name is scheduled, and the domain name is resolved to another high-defense IP address.

Check the workloads involving the domain name.

Services are not affected.

DDoS Attack Events

ddosAttackEvents

Critical

A DDoS attack occurs in the AAD protected lines.

Change the line or increase the protection bandwidth, if the attack traffic exceeds the elastic protection bandwidth.

Services may be affected.