AAD Operations Supported by CTS
CTS provides records of AAD operations. With CTS, you can query, audit, and backtrack these operations. For details, see Cloud Trace Service User Guide.
Table 1 lists Anti-DDoS Service operations recorded by CTS.
| Operation | Resource Type | Event Name |
|---|---|---|
| Uploading or modifying a certificate | domaincert | domainCert |
| Deleting a certificate | delcertificate | delCertificate |
| Adding a domain name, connecting a domain name to AAD, and creating a domain name | domaindns | domainDns |
| Importing domain names | importdomain | importDomain |
| Modifying the domain name configuration | domainconfigedit | domainConfigEdit |
| Setting basic web protection and CC attack protection | domainswitch | domainSwitch |
| Deleting a domain name | deletedomain | deleteDomain |
| Enabling or disabling domain name line resolution | cnameswitch | cnameSwitch |
| Adding field forwarding, modifying TLS configuration, and modifying the HTTP/2 protocol. | domainconfig | setDomainWafConfig |
| Adding a forwarding rule | addprotocolrule | addProtocolRule |
| Importing and adding forwarding rules in batches | importprotocolrule | importProtocolRule |
| Deleting forwarding rules in batches | batchdelprotocolrule | batchDelProtocolRule |
| Changing the back-to-origin IP address in the forwarding rule | modifyipinrule | modifyIpInRule |
| Enabling an instance | openinstance | openInstance |
| Updating instance specifications | csbupgrade | csbUpgrade |
| Deleting an instance | deleteinstance | deleteInstance |
| Changing an instance name. | modifyinstancename | modifyInstanceName |
| Modifying the elastic bandwidth of an AAD instance | modifyelasticbandwidth | modifyElasticBandwidth |
| Setting the PP protocol switch for an instance | instanceppswitch | instancePpSwitch |
| Enabling an instance (using the console) | cadopen | cadOpen |
| Enabling an instance (using CBC) | csbopen | csbOpen |
| Upgrading specifications (using the console) | cadupgrade | cadUpgrade |
| Modifying the LTS configuration of a user | ltsconfig | updateLtsConfig |
| Deleting the current LTS configuration | ltsconfig | deleteLtsConfig |
| Configuring the blacklist or whitelist | addblackwhitelist | addBlackWhiteList |
| Removing a blacklisted or whitelisted item | delblackwhitelist | delBlackWhiteList |
| Enabling cross-border traffic blocking | openforeignflowblock | openForeignFlowBlock |
| Disabling cross-border traffic blocking | closeforeignflowblock | closeForeignFlowBlock |
| Enabling UDP traffic blocking | openudpflowblock | openUDPFlowBlock |
| Disabling UDP traffic blocking | closeudpflowblock | closeUDPFlowBlock |
| Creating a frequency control rule | wafpolicycc | addCCPolicy |
| Updating a frequency control rule | wafpolicycc | setCCPolicy |
| Deleting a frequency control rule | wafpolicycc | deleteCCPolicy |
| Configuring a web protection policy | wafpolicy | updateWafPolicy |
| Modifying a CC attack protection rule | intellingentcc | updateIntelligentCc |
| Creating a geo-blocking rule | addwafgeoiprule | addWafGeoIpRule |
| Deleting a geo-blocking rule | deletewafgeoiprule | deleteWafGeoIpRule |
| Updating a geo-blocking rule | modifywafgeoiprule | updateWafGeoIpRule |
| Creating a CC blacklist or whitelist rule | addwafwhiteiprule | addWafWhiteIpRule |
| Deleting a CC blacklist or whitelist rule | deletewafwhiteiprule | deleteWafWhiteIpRule |
| Creating a precise protection rule | addwafcustomrule | addWafCustomRule |
| Updating a precise protection rule | modifywafcustomrule | updateWafCustomRule |
| Deleting a precise protection rule | deletewafcustomrule | deleteWafCustomRule |
| Configuring alarms | alarmconfig | setAlarmConfig |
| Batch adding or deleting tags | resourcetag | tmsResourceTagsAction |
| Enabling/Disabling CNAME automatic scheduling | cnamedispatchswitch | cnameDispatchSwitch |
| Modifying an intelligent CC attack protection rule | intellingentcc | updateIntellingentCc |
| Querying the IP address quota and the number of idle IP addresses at an access point | quotas | getRemainVipNum |
| Listing all available service access points in the system | quotas | listServiceAccessPoints |
| Listing regional service access points | quotas | listZoneServiceAccessPoints |
| Querying the domain name list | domain | listDomainDetail |
| Bypassing or restoring the protection of AAD for a domain name | domain | setDomainBypassSwitch |
| Domain name list | domain | listDomainName |
| Querying the global WAF configuration on the console | domain | listGlobalConfig |
| Querying the list of instance IDs that can be configured for a domain name during domain name creation | domain | listDomainTypeInstance |
| Querying the instance associated with a domain name and their lines | domain | listInstanceId |
| Configuring the port number for domain name access | domain | listDomainPort |
| Checking whether a domain name is valid and whether it already exists | domain | getDomainLegality |
| Querying the certificates associated with a domain name | domain | showDomainCertificate |
| Viewing the domain name configuration, regions where LTS is available, and current LTS configuration of the user | domain | getDomainConfig |
| Querying the basic details of a domain name | domain | getDomainDetail |
| Querying all the instances and forwarding rules of a specified domain name | domain | listDomainInstancesRules |
| Certificate details | certificate | listCertificateDetails |
| Certificate content | certificate | showCertificate |
| Querying the certificate list | certificate | listCertificate |
| Attack type distribution | dashboard | listAttackTypes |
| Blackhole event list | dashboard | listBlackHoleEvent |
| Listing DDoS event | dashboard | listDDoSEvent |
| Dynamic blacklist | dashboard | listDDoSDynamicBlackList |
| Querying attack events | dashboard | listAttackEvent |
| Exporting the blackhole event list | dashboard | exportBlackHoleEvent |
| Exporting attack events | dashboard | exportAttackEvent |
| Querying the peak inbound traffic, peak attack traffic, and number of DDoS attacks | dashboard | showDDoSPeak |
| Querying the instance list | quotas | getUserConfig |
| Querying quotas | quotas | listQuota |
| Checking whether the instance name is duplicate | instance | getInstanceDetail |
| Instance list - Querying the attack peak and number of attacks | instance | getInstanceStatistics |
| Querying the AAD instance list | instance | listInstanceDetails |
| Querying the EIP bandwidth specifications | instance | getElasticBandwidth |
| Querying the domain names associated with an AAD instance | instance | getInstanceDomain |
| Open API: Obtaining the back-to-origin IP address | instance | getSourceIP |
| Querying the number of attack source IP addresses | dashboard | getCCSourceNumber |
| Querying the request QPS | dashboard | getCCQPS |
| Querying the number of requests | dashboard | getQueryCount |
| Querying the top 5 attacks | dashboard | getCCSourceTop5 |
| Obtaining the status code | dashboard | getStatusCode |
| CC attack protection - attack type distribution | dashboard | getCCDefenseType |
| WAF URL distribution list | dashboard | listWafUrlDistribution |
| Blacklist and whitelist of an AAD instance | bwlist | listWhiteBlackIpRule |
| Blacklist and whitelist quota of an AAD instance | bwlist | getBlacklistOrWhitelistQuota |
| Querying traffic blocking | policy | getTrafficBlockInformation |
| Setting the instance specifications | instance | setInstanceSpecification |
| Specifications that can be upgraded for an instance | instance | listProductSpecification |
| Obtaining an open instance task | instance | getOpenInstanceJob |
| Instance brief list | instance | listInstanceBrief |
| Querying a web protection policy | policy | showWafPolicy |
| WAF whitelist IP address rule list | policy | listWafWhiteIpRule |
| WAF custom rule list | policy | listWafCustomRule |
| Querying the frequency control rule list | policy | listFrequencyControlRule |
| Creating a frequency control rule | policy | aadFrequencyControlRule |
| Querying a regional protection rule | policy | listWafGeoIpRule |
| Displaying the WAF geographic IP address mapping | policy | showWafGeoIpMap |
| Updating a frequency control rule | policy | updateFrequencyControlRule |
| Querying a forwarding rule or the forwarding rule of a specified high-defense IP address | forwardingRule | listForwardRule |
| Exporting a forwarding rule | forwardingRule | exportForwardRule |
| Displaying the server port quota | quotas | getDomainPortQuota |
| Obtaining the CC rule quota | quotas | getCCPolicyQuota |
| Querying resource instance errors | instances | queryResourceInstanceError |
| Querying resource instances by enterprise project | instances | listResourceInstance |
| Querying project tags | tags | listProjectTags |
| Operation errors related to TMS resource ID tags | tags | queryResourceTags |
| Querying the AAD instance list | instances | listInstance |
| Querying the region where a user is located | user-region | showUserRegion |
| Obtaining global configurations | console | getGlobalConfig |
| Querying the basic details of a domain name | domain | getDomainBrief |
| Querying the domain name list | domain | listDomain |
| Querying the line details of a domain name instance | domain | listDomainLine |
| Obtaining the version number | system | getVersion |
| AAD elastic bandwidth counter | instance | aadElasticServiceBandwidthMeters |
| CAD product counter | instance | getProductMeters |
| Querying the number of concurrent connections and new connections | dashboard | getConnectionNum |
| Obtaining the DDoS peak of an instance | dashboard | getDDoSPeak |
| Querying the PPS traffic | dashboard | getDDoSPPS |
| Querying the BPS traffic | dashboard | getDDoSQPS |
| Blackhole event list | block | listBlockIps |
| Querying the CC rule list | policy | listCCPolicy |
| Obtaining the bandwidth | dashboard | getBandwidth |
| Querying the attack event distribution | dashboard | getDDoSTypeTop5 |
| Displaying the alert list | alarmConfig | showAlarmConfig |
| Querying the forwarding rule of a specified high-defense IP address | forwardingRule | listInstanceIpRule |
| Querying the number of times that the elastic bandwidth of an AAD instance is modified | instance | getElasticBandwidthModifyCount |
| Creating an instance | instance | createInstance |
| Querying the ID of the instance associated with a domain name | domain | getDomainInstance |
| Querying the regions where LTS is available | dashboard | listLogTankServiceRegion |
| AAD elastic bandwidth counter | meter | getElasticServiceBandwidthMeters |
| Instance list tag - Querying resource tags | instance | getInstanceTag |
| Displaying alert configuration | alarmConfig | getAlarmConfigDetail |
| Querying the list of domain names protected against CC attacks | domain | listCCDomain |
| Creating forwarding rules for AAD IP addresses in batches | forwardingRule | batchCreateInstanceIpRule |
| Querying a regional blocking rule | policy | listPolicy |
| Querying web protection policy details | policy | showPolicy |
Feedback
Was this page helpful?
Provide feedbackThank you very much for your feedback. We will continue working to improve the documentation.See the reply and handling status in My Cloud VOC.
For any further questions, feel free to contact us through the chatbot.
Chatbot