All Products
Search
Document Center

Anti-DDoS:Operation logs

Last Updated:Mar 31, 2026

Operation logs record configuration changes made to an Anti-DDoS Origin instance, such as binding or unbinding IP addresses, downgrading instance specifications, and managing blackhole filtering. Use operation logs to audit what changed, and when.

Limitations

Operation logs cover the last 30 days. Logs older than 30 days are not available.

Supported operations

The following table lists the operations captured in operation logs.

OperationDescription
Bind IP addressesAdd assets with public IP addresses to the protected objects of an Anti-DDoS Origin instance.
Unbind IP addressesRemove assets with public IP addresses from the protected objects of an Anti-DDoS Origin instance.
Add asset groupAdd WAF and GA to the protected objects of an Anti-DDoS Origin instance.
Delete asset groupRemove WAF and GA from the protected objects of an Anti-DDoS Origin instance.
DowngradeDowngrade the specifications of an Anti-DDoS Origin instance.
Deactivate blackhole filteringDeactivate blackhole filtering for an Anti-DDoS Origin instance.
Reset quota on blackhole filtering deactivationReset the number of times that blackhole filtering can be deactivated for an Anti-DDoS Origin instance.
Enable burstable best-effort protectionResume best-effort protection after the Anti-DDoS Origin instance is renewed.

The following operations related to burstable clean bandwidth are also captured:

  • Enable daily 95th percentile bandwidth

  • Enable monthly 95th percentile bandwidth

  • Periodically switch between daily and monthly 95th percentile bandwidth

  • Disable daily 95th percentile bandwidth

  • Disable monthly 95th percentile bandwidth

  • Disable burstable clean bandwidth after payment becomes overdue

  • Disable burstable clean bandwidth after instance expires

View operation logs

  1. Go to the Operation Logs page of the Traffic Security console.

  2. In the top navigation bar, select the resource group and region for your instances.

    Instance typeRegion selection
    Anti-DDoS Origin 1.0 (Subscription)Select the region where the instance resides.
    Anti-DDoS Origin 2.0 (Subscription)Select All Regions.
    Anti-DDoS Origin 2.0 (Pay-as-you-go)Select All Regions.
  3. Select the Anti-DDoS Origin instance and time range to view the operation log.