Fraud Detection integrates with CloudMonitor, Cloud Config, ActionTrail, and SLS to provide real-time resource monitoring, log auditing, compliance checks, and alert notifications.
Monitoring capabilities
Fraud Detection computes metrics, models, and policy rules against live requests and traffic in real time, enabling prompt identification of security threats. It also monitors system status and performance continuously.
Supported monitoring metrics:
-
System status
-
Performance
-
Resource usage
Monitoring data is retained for seven days by default. You can view results in the Fraud Detection console or through API calls.
Log audit
Fraud Detection records all key operations and system events, making them traceable for security analysis, intrusion detection, resource change tracing, and compliance auditing.
Supported capabilities:
-
Custom log storage path
-
Custom log storage duration (default: six months)
-
Log delivery to SLS
View and search logs in the SLS console.
Health status monitoring
Real-time health check
Enable health status monitoring to view real-time service status on the Alibaba Cloud Health Status page.
Exception alerts
Subscribe to RSS feeds to receive exception notifications and respond promptly.
CloudMonitor
Metrics
Fraud Detection integrates with CloudMonitor and provides these metrics:
-
System event monitoring
-
Operation metric monitoring
-
Custom alert rules
Instructions
-
CloudMonitor is not activated by default. Activate it manually.
-
You can deactivate CloudMonitor at any time.
-
CloudMonitor has no impact on system performance and incurs no additional fees.
Cloud Config
Compliance check
Cloud Config supports MLPS 2.0 compliance pre-checks and records configuration changes every 10 minutes.
Audit reports
-
Download pre-check reports.
-
Deliver pre-check reports to SLS for analysis.
ActionTrail
Operation records
ActionTrail records all user operations, supporting:
-
Operation tracing
-
Permission audit
-
Security analysis
Audit policies
ActionTrail supports custom audit policies for fine-grained management.
SLS
Capabilities
-
RAM policies and STS temporary credentials
-
Encrypted data transmission over SSL/TLS
-
Three-replica storage mechanism
Scenarios
-
Security compliance audit
-
Centralized management of logs across multiple accounts
-
Automated log collection