Chaitin Tech Log/rule API

The log/rule API from Chaitin Tech — 2 operation(s) for log/rule.

Business capability
Threat Detection & Response Management BC-620.30

Operations 2

GET /open/record/rule/:id get black or white rule attack log detail #
GET /open/records/rule get black or white rule attack logs #

Work with this as data

Every API here is available over the APIs.io API and to AI agents over MCP.

MCP server

One button, every client — Claude, Cursor, VS Code and the rest.

https://apis.io/mcp

Tools for apis

7 MCP tools reach this
  • find_apisBrowse and filter every API in the catalog.
  • get_api_artifactsOne API's artifacts, grouped by type.
  • get_openapiThe primary OpenAPI for this API.
  • find_similar_apisAPIs that look like this one.
  • apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.
  • resolveTurn a domain, URL or GitHub org into the provider it belongs to.
  • find_cohortsEvery scored population of providers in the catalog.
All 92 tools →

Call it yourself

curl for this page
This API
curl "https://apis.io/api/v1/apis/chaitin-log-rule-api"
All apis
curl "https://apis.io/api/v1/apis?limit=25"

Discovery needs no key. Ratings and market analysis are Pro.

Get an API key

Free tier, no form to fill in. Signing in shares your email address with us — we store it to create your key and to recognise you if you sign in with another provider. See our Privacy Policy and Terms.

A second provider on the same verified email joins the account you already have.

OpenAPI Specification

chaitin-log-rule-api-openapi.yml Raw ↑
openapi: 3.2.0
info:
  description: mgt API swagger document.
  title: mgt Log/rule API
  contact: {}
  version: '2.0'
servers:
- url: /api
tags:
- name: log/rule
paths:
  /open/record/rule/:id:
    get:
      tags:
      - log/rule
      summary: get black or white rule attack log detail
      parameters:
      - description: log id
        name: id
        in: path
        required: true
        x-cli-description: 资源 ID
        schema:
          type: string
      responses:
        '200':
          description: OK
          content:
            application/json:
              schema:
                allOf:
                - $ref: '#/components/schemas/response.JSONBody'
                - type: object
                  properties:
                    data:
                      $ref: '#/components/schemas/model.RuleDetectLog'
      x-cli-summary: 查看黑白名单检测日志详情
      operationId: getOpenRecordRule:id
      x-operation-id-source: derived
  /open/records/rule:
    get:
      tags:
      - log/rule
      summary: get black or white rule attack logs
      parameters:
      - name: action
        in: query
        x-cli-description: 动作类型:0-放行 1-阻断 2-挑战 3-认证防护 4-混淆 5-等待室
        schema:
          type: string
      - name: attack_type
        in: query
        x-cli-description: 攻击类型
        schema:
          type: string
      - name: end
        in: query
        x-cli-description: 结束时间戳(秒)
        schema:
          type: integer
      - name: event_id
        in: query
        x-cli-description: 事件 ID
        schema:
          type: string
      - name: host
        in: query
        x-cli-description: 域名
        schema:
          type: string
      - name: ip
        in: query
        x-cli-description: IP 地址
        schema:
          type: string
      - name: ja4_fingerprint
        in: query
        x-cli-description: JA4 指纹
        schema:
          type: string
      - name: page
        in: query
        x-cli-description: 页码
        schema:
          type: integer
          minimum: 1
      - name: page_size
        in: query
        x-cli-description: 每页数量
        schema:
          type: integer
          maximum: 100
          minimum: 1
      - name: port
        in: query
        x-cli-description: 端口
        schema:
          type: string
      - name: start
        in: query
        x-cli-description: 开始时间戳(秒)
        schema:
          type: integer
      - name: url
        in: query
        x-cli-description: URL 路径
        schema:
          type: string
      responses:
        '200':
          description: OK
          content:
            application/json:
              schema:
                allOf:
                - $ref: '#/components/schemas/response.JSONBody'
                - type: object
                  properties:
                    data:
                      $ref: '#/components/schemas/record.GetRuleDetectLogListRes'
      x-cli-summary: 查看黑白名单检测日志列表
      operationId: getOpenRecordsRule
      x-operation-id-source: derived
components:
  schemas:
    response.JSONBody:
      type: object
      properties:
        data: {}
        err:
          type: string
        msg:
          type: string
    record.GetRuleDetectLogListRes:
      type: object
      properties:
        data:
          type: array
          items:
            $ref: '#/components/schemas/model.RuleDetectLog'
        total:
          type: integer
    model.RuleDetectLog:
      type: object
      properties:
        action:
          description: '0: 放行, 1: 阻断'
          type: integer
        attack_type:
          type: integer
        city:
          type: string
        country:
          type: string
        created_at:
          type: string
        decode_path:
          type: string
        dst_ip:
          type: string
        dst_port:
          type: integer
        eventId:
          type: string
        event_id:
          description: to eliminate ambiguous
          type: string
        host:
          type: string
        id:
          type: integer
        ja4_fingerprint:
          type: string
        lat:
          type: string
        lng:
          type: string
        location:
          type: string
        method:
          type: string
        module:
          type: string
        payload:
          type: string
        policy_name:
          type: string
        protocol:
          type: integer
        province:
          type: string
        query_string:
          type: string
        reason:
          type: string
        req_body:
          type: string
        req_header:
          type: string
        risk_level:
          type: integer
        rsp_body:
          type: string
        rsp_header:
          type: string
        rule_id:
          type: string
        rule_id_list:
          type: array
          items:
            type: string
        short_rule_id:
          type: string
        site_uuid:
          type: string
        socket_ip:
          type: string
        src_ip:
          type: string
        src_port:
          type: integer
        status_code:
          type: integer
        timestamp:
          type: integer
        updated_at:
          type: string
        url_path:
          type: string
        website:
          type: string
x-cli:
  tags:
    site: 防护站点管理
    cert: 授权与证书管理
    log: 日志查询
    stat: 数据统计
    skynet: 加强规则管理
    module: 语义分析模块配置
    rule: 自定义规则管理
    ipgroup: IP 黑白名单管理
  children:
    log/attack: 攻击日志
    log/audit: 审计日志
    log/rule: 黑白名单检测日志
    stat/trend: 趋势统计
  params:
    server_names: 域名(多个用逗号分隔)
    ports: 端口(多个用逗号分隔)
    upstreams: 后端地址(多个用逗号分隔)
    cert_id: 证书 ID
    comment: 备注说明
    email: 管理员邮箱
    group_id: 分组 ID
    health_check: 是否启用健康检查
    id: 资源 ID
    ids: 资源 ID(多个用逗号分隔)
    site: 站点域名
    sp_enabled: 是否启用语义分析
    stat_enabled: 是否启用统计
    load_balance: 负载均衡策略
    name: 规则名称
    pattern: 匹配规则(JSON 格式)
    action: 动作类型:0-放行 1-阻断 2-挑战 3-认证防护 4-混淆 5-等待室
    level: 风险等级
    enable: 是否启用
    mode: 模式:strict/default/dry_run/disable/deny
    semantics: 语义分析配置
    use_global: 是否使用全局配置
    ips: IP 地址(多个用逗号分隔)
    ip_group_ids: IP Group ID(多个用逗号分隔)
    page: 页码
    page_size: 每页数量
    size: 每页数量
    start: 开始时间戳(秒)
    end: 结束时间戳(秒)
    begin_time: 开始时间戳(秒)
    end_time: 结束时间戳(秒)
    site_id: 站点 ID
    host: 域名
    ip: IP 地址
    url: URL 路径
    port: 端口
    attack_type: 攻击类型
    event_id: 事件 ID
    ja4_fingerprint: JA4 指纹
    top: 返回前 N 条
    reference: 引用来源
    expire: 过期时间
    log: 是否记录日志
    is_enabled: 是否启用
    global: 是否全局