Updated on 2025-12-12 GMT+08:00

Viewing Server WTP Events

Scenario

Once server WTP is enabled, HSS will comprehensively check protected directories you specified. You can check records about detected tampering of host protection files.

Prerequisites

Agent Status of the server is Online, and its WTP Status is Enabled. For more information, see Viewing Server Protection Status.

Viewing WTP Events

  1. Log in to the HSS console.
  2. Click in the upper left corner and select a region or project.
  1. Choose Prevention > Server WTP and click Events to view the tampering records of protected files on servers.

    To record a process tampering with a Linux server, you need to enable privileged process settings. For details, see Modifying Server WTP Configuration.

    Figure 1 Events