put https://{hostname}/appsec/v1/configs//versions//advanced-settings/logging/attack-payload
Enable, disable, or update attack payload log settings for a configuration. When set to NONE
, the request body and response body show as redacted in the log. For example, JSON_PAIRS:redacted
. When set to RESPONSE_BODY
or REQUEST_BODY
the log shows only the string flagged as a possible attack, and not the entire request or response body. This operation applies at the configuration level, and therefore applies to all policies within a configuration. If you want to override these settings for a specific policy, run Modify attack payload log settings for a policy. Products: All.