Docs
uewaf
Operation Guide
Security Report
Attack Overview

Attack Overview

Select the corresponding domain or all domains and the specified time range, the attack overview will display the preset attack analysis report according to the selected domain and time range.

Data Display

Data MetricsDescription
Total RequestsTotal count of all requests for the selected domain
Total AttacksTotal count of all attacks for the selected domain
Blacklist Interception TimesCount of blacklist intercepted requests for the selected domain, i.e., statistics of request counting with response status code recorded as 444
Custom Rules Trigger TimesCount of times the selected domain triggered the custom rules
CC Rules Interception TimesCount of times the selected domain triggered the CC rules, upon triggering the CC rules, subsequent requests may record a 444 status code
System Default Rules Interception TimesCount of times the selected domain triggered the UWAF default rules

Chart Information Display

  • Attack Time Protection Axis: Counts the number of attacks passed or intercepted within a period of time. If the selected working mode is “Record but Do Not Intercept”, all protective actions will be “Pass”. If the selected working mode is “Enable Protection Rules”, the protection actions will be “Intercept”.
  • Attack Category Attack Trend: Statistical analysis of attack trends of different attack types
  • Risk Level Distribution: Counts the number of attacks of different risk levels found.
  • Attack Type Distribution: Counts the number of attacks of different attack types.
  • Top 10 Attack IPs: Which 10 IPs have the most attacks (specific IPs can be excluded)
  • Top 10 Attack Paths: Which 10 paths have the most attacks
  • Top 10 Attack Source Locations: Which IP source locations initiate the most attacks
  • Top 10 Attack Request UAs: UAs characteristics that initiate the most attacks