Modifies the cookie settings of a protected object and the method to identify the originating IP addresses of clients.
Try it now
Test
RAM authorization
Action | Access level | Resource type | Condition key | Dependent action |
yundun-waf:ModifyDefenseResourceXff | update | *DefenseResource
| None | None |
Request parameters
Parameter | Type | Required | Description | Example |
XffStatus | integer | Yes | Specifies whether a Layer 7 proxy is deployed in front of WAF. Layer 7 proxies include Anti-DDoS Proxy and Alibaba Cloud CDN. Valid values:
| 0 |
InstanceId | string | Yes | The ID of the WAF instance. Note You can call the DescribeInstance operation to query the ID of the current WAF instance. | waf_v2_public_cn-wwo3c****07 |
CustomHeaders | array | No | The custom header fields. Note The first IP address in the specified header field is used as the client source IP address to prevent X-Forwarded-For (XFF) spoofing. If multiple headers are specified, they are tried in sequence to obtain the source IP address. If the first header does not contain an IP address, the system tries the second header, and so on. If no IP address is found in any of the specified headers, the system uses the first IP address in the X-Forwarded-For header. | |
string | No | The custom header field. | x-forwarded-for | |
Resource | string | Yes | The name of the protected object. | alb-4pxu81fgagx3****mz-alb |
AcwCookieStatus | integer | No | The status of the tracking cookie.
| 0 |
AcwSecureStatus | integer | No | The status of the secure attribute of the tracking cookie.
| 0 |
AcwV3SecureStatus | integer | No | The status of the secure attribute of the slider CAPTCHA cookie.
| 0 |
RegionId | string | No | The region of the WAF instance. Valid values:
| cn-hangzhou |
ResponseHeaders | array | No | The response header parameters. | |
object | No | The response header parameters. | ||
Key | string | No | Specifies the key for a custom response header. | Header-Key |
Value | string | No | Specifies the value for a custom response header. | Header-Value |
ResourceManagerResourceGroupId | string | No | The ID of the Alibaba Cloud resource group. | rg-acfm2kie2****wq |
Response parameters
Parameter | Type | Description | Example |
object | |||
RequestId | string | The request ID. | 6C094583-9B3F-5BD8-8748-DC638E****BF |
Examples
Successful response
JSON format
{
"RequestId": "6C094583-9B3F-5BD8-8748-DC638E****BF"
}Error codes
HTTP status code | Error code | Error message | Description |
400 | Waf.Pullin.AbnormalStatus | The status of the access resource is abnormal. Resource:%s. |
See Error Codes for a complete list.
Release notes
See Release Notes for a complete list.