JS Challenge Token support (challenge + TTL settings)

Feature

JS Challenge Token support (challenge + TTL settings)

Description

Challenge token flow to gate suspicious traffic.

How it works

AegisWAF applies this capability inside the WAF Rules module. The engine evaluates configuration, applies matching (path/method/tokens/counters/providers), then records evidence into the event log and executes the configured enforcement action when conditions are met.

How to access / Enable or disable

  • Access: AegisWAF → WAF Settings (Rules section)
  • Enable/Disable: Use the module toggle/switch on this screen (or the relevant category toggle) to enable/disable.

Recommended setting

Use 10–30 minutes TTL for normal browsing; shorter TTL for high-risk endpoints.