Application overview
Violation categories
| WAF | Bot |
|---|---|
| Cookie Hijack | Scraper |
| Infer Content Type XML | Screenshot Creator |
| Buffer Overflow | Search Engine |
| Content Type | Service Agent |
| Cookie Consistency | Site Monitor |
| CSRF Form Tagging | Speed Tester |
| Deny URL | Uncategorized |
| Form Field Consistency | Virus Scanner |
| Field Formats | Vulnerability Scanner |
| Maximum Uploads | DeviceFP Wait Exceeded |
| Referrer Header | Invalid DeviceFP |
| Safe Commerce | Invalid Captcha Response |
| Safe Object | Tool |
| HTML SQL Inject | Captcha Attempts Exceeded |
| Start URL | Valid Captcha Response |
| Cross-site scripting | Captcha Client Muted |
| XML DoS | Captcha Wait Time Exceeded |
| XML Format | Request Size Limit Exceeded |
| XML WSI | Rate Limit Exceeded |
| XML SSL | Block list (IP, subnet, policy expression) |
| XML Attachment | Allow list (IP, subnet, policy expression) |
| XML SOAP Fault | Zero Pixel Request |
| XML Validation | Source IP |
| Others | Host |
| IP Reputation | Crawler |
| HTTP DOS | Feed Fetcher |
| TCP Small Window | Link Checker |
| Signature Violation | Marketing |
| File Upload Type | Geo Location |
| JSON cross-site scripting | URL |
| JSON SQL | |
| JSON DOS | |
| Command Injection | |
| Block Keyword | |
| JSON Block Keyword | |
| Command Injection Grammar |
View WAF violation details
-
A graph view that indicates the total violations, threat index score, safety index score for the application.
Click View Details to see the Application Firewall and NetScaler System Security configuration details.
-
The violations based on types, severity, and actions applied.
Click Logs to view details based on the severity or action taken. You can also view the client IP address.
You can also use the search text box where you can view details as per your requirement. When you click the search box, the search box gives you the list of search suggestions. -
The violations affected on the application. Under Violation Details, you can view the affected violation details.NoteFor a custom app, violations that are applicable for all applications are displayed. You can click an application from the list to view the violations affected for the selected application.Click each violation to view details such as:
-
What Happened – Indicates the total occurrences and the last occurred date and time.
-
Event Details – Displays a geo map that indicates the client IP and other violation details such as violation type, client IP, location, and so on.

-
View bot violation details
-
A graph indicating total bots, total bad bots, total good bots, and total ratio between human users and bots accessing the application.

-
The violations based on the bot types, severity, and actions applied.
Click Logs to view details based on severity or actions taken. If a detected bot is a Signature type bot, you can view more details such as Bot developer and Signature ID. The Signature ID enables you to identify if the detected bot is a good bot or a bad bot.
Note:If a detected bot is any other bot type apart from Signature bot, the Signature ID and Bot developer are displayed as N/A.
You can also use the search text box where you can view bot details as per your requirement. When you click the search box, the search box gives you the list of search suggestions. -
The violations affected on the application. Under Violation Details, you can view the affected violation details.Note:For a custom app, violations that are applicable for all applications are displayed. You can click an application from the list to view the violations affected for the selected application.Click each violation to view details such as:
-
What Happened – Indicates the total occurrences and the last occurred date and time.
-
Event Details – Displays a geo map that indicates the client IP and other violation details such as violation type, client IP, location, and so on.

-
View events history
-
New signatures are added in NetScaler instances.
-
Existing signatures are updated in NetScaler instances.
Signature auto update