Follow

Editing Web & Mobile App API URL Settings by Path

By editing a domain’s default settings, you can configure automated responses to thwart attacks against your entire site and its content. You can also tailor specific settings for individual paths.

To access content protection settings for an API path:

  1. Log in to the Distil Portal.

  2. Click API Security on the top banner menu, then select Web & Mobile App API.

    Menu_Option_-_Web_and_Mobile_App.png

  3. Select an API URL from your API URLs dashboard.

  4. Click Settings on the banner menu.

    API_Settings.png

  5. Click Edit Settings by Path in the Content Protection section.

    Editing_Path_2.png

Content protection settings are organized by tabs, including:

All_Policies.png

You can activate multiple threat responses for Distil to use in automatically mitigating threats.

NOTE
: All of these settings default to monitor-only mode for new customers.

Automated threat responses for dynamic web APIs include:

  • Monitor – Identify bots without taking any action. Distil automatically runs our entire detection suite, but does not take action. However, Distil does embed an X-Distil bot header that identifies the type of bot and the different threats that it failed, if applicable.

  • Drop – Distil serves a drop page to the requester with the associated violation indicating their access to the API has been blocked.

     

Was this article helpful?
0 out of 0 found this helpful
Have more questions? Submit a request

Comments