创建日志配置
功能介绍
创建日志配置
调用方法
请参见如何调用API。
URI
POST /v1/{project_id}/cfw/logs/configuration
参数 |
是否必选 |
参数类型 |
描述 |
---|---|---|---|
project_id |
是 |
String |
租户项目id |
参数 |
是否必选 |
参数类型 |
描述 |
---|---|---|---|
fw_instance_id |
是 |
String |
防火墙实例id,创建云防火墙后用于标志防火墙由系统自动生成的标志id,可通过调用查询防火墙实例接口。 |
enterprise_project_id |
否 |
String |
企业项目id,用户支持企业项目后,由企业项目生成的id。 |
请求参数
参数 |
是否必选 |
参数类型 |
描述 |
---|---|---|---|
X-Auth-Token |
是 |
String |
用户Token。 通过调用IAM服务获取用户Token接口获取(响应消息头中X-Subject-Token的值) |
参数 |
是否必选 |
参数类型 |
描述 |
---|---|---|---|
fw_instance_id |
是 |
String |
防火墙id |
lts_enable |
是 |
Integer |
是否开启LTS |
lts_log_group_id |
是 |
String |
LTS日志分组id |
lts_attack_log_stream_id |
否 |
String |
攻击日志流id |
lts_attack_log_stream_enable |
是 |
Integer |
是否开启攻击日志流 |
lts_access_log_stream_id |
否 |
String |
访问控制日志流id |
lts_access_log_stream_enable |
是 |
Integer |
是否开启访问控制流 |
lts_flow_log_stream_id |
否 |
String |
流量日志id |
lts_flow_log_stream_enable |
是 |
Integer |
是否开启流量日志 |
响应参数
状态码: 200
参数 |
参数类型 |
描述 |
---|---|---|
data |
String |
添加日志配置返回值 |
请求示例
给项目id为408972e72dcd4c1a9b033e955802a36b下的防火墙4d6c860a-0338-49e8-ac64-fcaeb4182ba5添加日志流配置,lts分组id为20282428-a8f9-4e75-8246-165e64cf8ba8,访问控制日志流关闭,流量日志流关闭,攻击日志流关闭,lts关闭。
https://{Endpoint}/v1/408972e72dcd4c1a9b033e955802a36b/cfw/logs/configuration?fw_instance_id=4d6c860a-0338-49e8-ac64-fcaeb4182ba5&enterprise_project_id=default { "fw_instance_id" : "4d6c860a-0338-49e8-ac64-fcaeb4182ba5", "lts_enable" : 0, "lts_log_group_id" : "20282428-a8f9-4e75-8246-165e64cf8ba8", "lts_attack_log_stream_enable" : 0, "lts_access_log_stream_enable" : 0, "lts_flow_log_stream_enable" : 0 }
响应示例
状态码: 200
添加日志配置返回值
{ "data" : "4d6c860a-0338-49e8-ac64-fcaeb4182ba5" }
SDK代码示例
SDK代码示例如下。
Java
给项目id为408972e72dcd4c1a9b033e955802a36b下的防火墙4d6c860a-0338-49e8-ac64-fcaeb4182ba5添加日志流配置,lts分组id为20282428-a8f9-4e75-8246-165e64cf8ba8,访问控制日志流关闭,流量日志流关闭,攻击日志流关闭,lts关闭。
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 |
package com.huaweicloud.sdk.test; import com.huaweicloud.sdk.core.auth.ICredential; import com.huaweicloud.sdk.core.auth.BasicCredentials; import com.huaweicloud.sdk.core.exception.ConnectionException; import com.huaweicloud.sdk.core.exception.RequestTimeoutException; import com.huaweicloud.sdk.core.exception.ServiceResponseException; import com.huaweicloud.sdk.cfw.v1.region.CfwRegion; import com.huaweicloud.sdk.cfw.v1.*; import com.huaweicloud.sdk.cfw.v1.model.*; public class AddLogConfigSolution { public static void main(String[] args) { // The AK and SK used for authentication are hard-coded or stored in plaintext, which has great security risks. It is recommended that the AK and SK be stored in ciphertext in configuration files or environment variables and decrypted during use to ensure security. // In this example, AK and SK are stored in environment variables for authentication. Before running this example, set environment variables CLOUD_SDK_AK and CLOUD_SDK_SK in the local environment String ak = System.getenv("CLOUD_SDK_AK"); String sk = System.getenv("CLOUD_SDK_SK"); ICredential auth = new BasicCredentials() .withAk(ak) .withSk(sk); CfwClient client = CfwClient.newBuilder() .withCredential(auth) .withRegion(CfwRegion.valueOf("<YOUR REGION>")) .build(); AddLogConfigRequest request = new AddLogConfigRequest(); request.withFwInstanceId("<fw_instance_id>"); request.withEnterpriseProjectId("<enterprise_project_id>"); LogConfigDto body = new LogConfigDto(); body.withLtsFlowLogStreamEnable(0); body.withLtsAccessLogStreamEnable(0); body.withLtsAttackLogStreamEnable(0); body.withLtsLogGroupId("20282428-a8f9-4e75-8246-165e64cf8ba8"); body.withLtsEnable(0); body.withFwInstanceId("4d6c860a-0338-49e8-ac64-fcaeb4182ba5"); request.withBody(body); try { AddLogConfigResponse response = client.addLogConfig(request); System.out.println(response.toString()); } catch (ConnectionException e) { e.printStackTrace(); } catch (RequestTimeoutException e) { e.printStackTrace(); } catch (ServiceResponseException e) { e.printStackTrace(); System.out.println(e.getHttpStatusCode()); System.out.println(e.getRequestId()); System.out.println(e.getErrorCode()); System.out.println(e.getErrorMsg()); } } } |
Python
给项目id为408972e72dcd4c1a9b033e955802a36b下的防火墙4d6c860a-0338-49e8-ac64-fcaeb4182ba5添加日志流配置,lts分组id为20282428-a8f9-4e75-8246-165e64cf8ba8,访问控制日志流关闭,流量日志流关闭,攻击日志流关闭,lts关闭。
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 |
# coding: utf-8 import os from huaweicloudsdkcore.auth.credentials import BasicCredentials from huaweicloudsdkcfw.v1.region.cfw_region import CfwRegion from huaweicloudsdkcore.exceptions import exceptions from huaweicloudsdkcfw.v1 import * if __name__ == "__main__": # The AK and SK used for authentication are hard-coded or stored in plaintext, which has great security risks. It is recommended that the AK and SK be stored in ciphertext in configuration files or environment variables and decrypted during use to ensure security. # In this example, AK and SK are stored in environment variables for authentication. Before running this example, set environment variables CLOUD_SDK_AK and CLOUD_SDK_SK in the local environment ak = os.environ["CLOUD_SDK_AK"] sk = os.environ["CLOUD_SDK_SK"] credentials = BasicCredentials(ak, sk) client = CfwClient.new_builder() \ .with_credentials(credentials) \ .with_region(CfwRegion.value_of("<YOUR REGION>")) \ .build() try: request = AddLogConfigRequest() request.fw_instance_id = "<fw_instance_id>" request.enterprise_project_id = "<enterprise_project_id>" request.body = LogConfigDto( lts_flow_log_stream_enable=0, lts_access_log_stream_enable=0, lts_attack_log_stream_enable=0, lts_log_group_id="20282428-a8f9-4e75-8246-165e64cf8ba8", lts_enable=0, fw_instance_id="4d6c860a-0338-49e8-ac64-fcaeb4182ba5" ) response = client.add_log_config(request) print(response) except exceptions.ClientRequestException as e: print(e.status_code) print(e.request_id) print(e.error_code) print(e.error_msg) |
Go
给项目id为408972e72dcd4c1a9b033e955802a36b下的防火墙4d6c860a-0338-49e8-ac64-fcaeb4182ba5添加日志流配置,lts分组id为20282428-a8f9-4e75-8246-165e64cf8ba8,访问控制日志流关闭,流量日志流关闭,攻击日志流关闭,lts关闭。
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 |
package main import ( "fmt" "github.com/huaweicloud/huaweicloud-sdk-go-v3/core/auth/basic" cfw "github.com/huaweicloud/huaweicloud-sdk-go-v3/services/cfw/v1" "github.com/huaweicloud/huaweicloud-sdk-go-v3/services/cfw/v1/model" region "github.com/huaweicloud/huaweicloud-sdk-go-v3/services/cfw/v1/region" ) func main() { // The AK and SK used for authentication are hard-coded or stored in plaintext, which has great security risks. It is recommended that the AK and SK be stored in ciphertext in configuration files or environment variables and decrypted during use to ensure security. // In this example, AK and SK are stored in environment variables for authentication. Before running this example, set environment variables CLOUD_SDK_AK and CLOUD_SDK_SK in the local environment ak := os.Getenv("CLOUD_SDK_AK") sk := os.Getenv("CLOUD_SDK_SK") auth := basic.NewCredentialsBuilder(). WithAk(ak). WithSk(sk). Build() client := cfw.NewCfwClient( cfw.CfwClientBuilder(). WithRegion(region.ValueOf("<YOUR REGION>")). WithCredential(auth). Build()) request := &model.AddLogConfigRequest{} request.FwInstanceId = "<fw_instance_id>" enterpriseProjectIdRequest:= "<enterprise_project_id>" request.EnterpriseProjectId = &enterpriseProjectIdRequest request.Body = &model.LogConfigDto{ LtsFlowLogStreamEnable: int32(0), LtsAccessLogStreamEnable: int32(0), LtsAttackLogStreamEnable: int32(0), LtsLogGroupId: "20282428-a8f9-4e75-8246-165e64cf8ba8", LtsEnable: int32(0), FwInstanceId: "4d6c860a-0338-49e8-ac64-fcaeb4182ba5", } response, err := client.AddLogConfig(request) if err == nil { fmt.Printf("%+v\n", response) } else { fmt.Println(err) } } |
更多
更多编程语言的SDK代码示例,请参见API Explorer的代码示例页签,可生成自动对应的SDK代码示例。
状态码
状态码 |
描述 |
---|---|
200 |
添加日志配置返回值 |
错误码
请参见错误码。