All Products
Search
Document Center

Edge Security Acceleration:Lists

Last Updated:Oct 25, 2024

If you want to perform JavaScript validation and bot management for multiple IP addresses or CIDR blocks, you can specify different IP addresses or CIDR blocks in a list. Then, you can reference the list when you configure protection rules such as Web Application Firewall (WAF) or bot management rules. This helps prevent repeated entry of IP addresses or CIDR blocks.

Create a list

  1. Log on to the ESA console.

  2. In the left-side navigation pane, choose Global Settings > Lists.

  3. On the Lists page, click Create List.

  4. In the Create List dialog box, configure the parameters.

    Note

    You can configure up to 10 lists for each Alibaba Cloud account.

    Parameter

    Description

    List Name

    The list name. The name must be 1 to 32 characters in length and can contain letters, digits, and underscores (_). The name cannot start with an underscore (_).

    Type

    • IP Address/CIDR Block: You can include up to 500 IP addresses or CIDR blocks in a list. Separate multiple IP addresses or CIDR blocks with commas (,).

    • ASN: An Autonomous System Number (ASN) uniquely identifies an autonomous system on the Internet. An autonomous system is a group of IP networks and routers controlled by a network management organization, such as an Internet service provider, enterprise, or large institution. You can query the ASN of an IP address on a third-party website, such as IPLocation.io, or view the ASN of a request by following instructions in Instant logs.

    • Hostname: The value of the Host header in the request, which determines the requested domain name.

Reference a list

After you create a list, you can reference the list when you configure rules for features described in the following table.

Feature

Reference method

Custom rules

When you add the corresponding rule, the match value can reference the IP address or CIDR block list only if the match parameter is set to IP Source Address and the logic operator is is in list or is not in list in the If requests match... section.

Rate limiting rules

Scan protection rules

Whitelist rules

Bots