WAF Events
CF Dash lets you monitor Cloudflare's Web Application Firewall (WAF) events in real time from the Monitor tab.
Open WAF Events
- Open the Monitor tab.
- Switch to the WAF sub-tab.
- Use the zone dropdown to select the domain you want to inspect.
Event List
The WAF events list shows firewall events with their action and source, so you can see what's being blocked, challenged, or allowed.
Filtering
Use the filter bar to narrow the list:
- Action — filter by the firewall action (for example Block, Challenge, Managed Challenge, Allow).
- Source — filter by the source of the traffic.
Filters apply immediately and the list reloads with matching events. You can also:
- Refresh — reload the events with the current filters.
- Load more — paginate through older events.
WAF event monitoring with filtering is a Pro feature.
Common Use Cases
- Investigate an attack — filter by
Blockand a suspicious source to see what's being blocked. - Check a rule change — after editing a WAF rule, filter by action to confirm the intended behavior.