tencent cloud

Tencent Cloud Firewall

Release Notes and Announcements
Release Notes
Engine Release Notes
Product Announcement
Getting Started
Product Introduction
Overview
Advantages
Scenarios
Key Concepts
Supported Region
CFW High Availability Specification
Purchase Guide
Billing Overview
Purchase Instructions
Billing Modes
Renewal Instructions
Resource deletion upon expiration
Refund Instructions
Operation Guide
Firewall Toggle
Asset Center
Alert Management
Traffic Monitoring
Access Control
Intrusion Defense
Network Detection and Response
Honeypot
Log Audit
Log Analysis
Log Shipping
Log Fields
Notifications and Settings
Common Tools
Practical Tutorial
Use Cloud Firewall with Other Products
DNS Firewall Practical Tutorial
Practical Tutorial for Protecting Against Mining Attacks
Inter-VPC Firewall Practice Tutorial
Troubleshooting
Solution for False Alarms and False Positives
API Documentation
History
Introduction
API Category
Making API Requests
Intrusion Defense APIs
Access Control APIs
Other APIs
Enterprise Security Group APIs
Firewall Status APIs
Data Types
Error Codes
FAQs
Basic Introduction
Bandwidth
Firewall
Feature
Log
Account
Billing
Others
Service Level Agreement
CFW Policy
Privacy Policy
Data Processing And Security Agreement

Traffic Monitoring

PDF
Focus Mode
Font Size
Last updated: 2025-06-23 18:07:50

How Long Is the Delay Time of the Cloud Firewall Traffic Bandwidth Graph?

The delay is generally 1 minute.

How Frequently Is the Traffic Center Updated? How Frequently Are Traffic Logs Updated?

The center list updates every 10 minutes, and traffic logs update in real time.

Cloud Firewall Traffic Peak Mismatch?

The traffic chart displays the average bandwidth, which is the mean within the statistical time scale.
The peak value is calculated based on traffic statistics within 10 seconds. A single IP's average is reported every 10 seconds, and the maximum within a time range is taken as the peak value.
Alarm and billing are based on traffic statistics shown on the page.

Why Do Some Traffic Logs Not Contain Domain Information for Requests to Port 443?

1. TCP handshake incomplete or fail to establish connection.
2. Failed when accessing without a domain name.
3. Client request does not carry SNI.

Traffic Analysis of CFW: in Which Regions Is VPC Deployed and Whether Proximity Analysis Is Adopt?

Currently, it is only deployed in the Guangzhou region. In fact, based on customer business requirements, a cluster is set up in each region for nearby processing.

Maximum Analysis Traffic of CFW NDR and Performance Limit of Traffic Diversion Private Link?

The performance limit of Private Link does not reach the theoretical value, and the actual limit depends on the private network bandwidth of the server.

How to Determine Whether Traffic Is Private Network Traffic or Public Network Traffic and How to Judge Traffic Imported From Other Clouds Via Direct Connect?

Determine based on the source address IP type. Since the peer VPC of the direct connect belongs to the private network, the traffic is identified as private network traffic.

Whether Intrusion Defense Engine Rules Remain Valid If Most Traffic Is HTTPS?

Intrusion prevention rules also include rules effective for HTTPS, especially those targeting vulnerability types, which can detect features through regular expression matching, so some alerts can be detected even in encrypted traffic.

Traffic Analysis Log Size?

The maximum record for one session is 1000 bytes. In fact, data undergoes compression, and not all packets in transit are logged.

Help and Support

Was this page helpful?

Help us improve! Rate your documentation experience in 5 mins.

Feedback