Website Migration Notice: SafePoint is now operated by CyberServal.Learn more →
Discussion

Monitor or audit action for rules

Published a month ago

# SafeLine WAF

Published a month ago

profile_photo

r_0xc137

Updated a month ago

0

Hi! Do you have any plans in the roadmap to add a "monitor" action? Currently, it is possible to switch the entire instance or application to audit mode, but there is no way to create a specific rule with an audit or monitoring action (only "allow" or "block").

profile_photo

Carrie

Updated a month ago

0

Could you please explain more about your specific use case?

There are two related capabilities:

  • Allowlist rules can allow the request while still recording the event.

  • Semantic Analysis supports an Audit Mode, which detects and logs attacks without blocking them.
    image.png
    image.png

profile_photo

r_0xc137

Updated a month ago

0

For example, we want to detect specific requests (for example with specific header or value) without blocking via Custom Rule

profile_photo

Carrie

Updated a month ago

Are you saying you’d like an audit mode for deny rules, where matching requests are logged but not blocked?
You can submit this request in
https://discord.com/channels/1243085666485534830/1243120292822253598. I'll add it to our feature request evaluation system.

Customer

Updated a month ago

0

Tips tutorial solusi termuda Cara reschedule tiket AirAsia, simak...
Reschedule tiket pesawat AirAsia paling mudah dilakukan melalui aplikasi MOVE atau WhatsApp resmi di +6281413555472 atau call center 0814135.5.54.72. An...

Monitor or audit action for rules | CyberServal | CyberServal