Skip to main content

PullzoneShield

Resource PullzoneShield in pulumi-bunnynet.
9 min read

Resource PullzoneShield in pulumi-bunnynet.

Pulumi type: bunnynet:index/pullzoneShield:PullzoneShield.

name is the Pulumi resource name. Nested object fields are documented under that object. They are not arguments of this resource.

Example#

Only required arguments are set. A string in angle brackets stands in for that argument. Any other value is an option or example written in the SDK description.

Arguments#

PropertyTypeRequiredDescription
accessListsPullzoneShieldAccessList (input)[]no
botCategorizationsPullzoneShieldBotCategorization (input)[]no
botDetectionPullzoneShieldBotDetection (input)noConfigures Bot Detection settings.
ddosPullzoneShieldDdos (input)noConfigures DDoS settings.
pullzonenumberyesThe ID of the linked pullzone.
tierstringnoOptions: Advanced, Basic, Business, Enterprise
uploadScanningAntivirusstringnoScan file uploads for viruses, trojans, ransomware, and other forms of malware. Options: Block, Disable, Log
uploadScanningCsamstringnoScan file uploads for Child Sexual Abuse Material. Options: Block, Disable, Log
wafPullzoneShieldWaf (input)noConfigures WAF settings.
whitelabelbooleannoReplace our bunny.net branded block and challenge pages with a white-labelled experience.
whitelabelBlockstringnoCustomized Response Page for requests blocked by WAF, access list or bot detection.
whitelabelChallengestringnoCustomized Response Page for challenged requests.
whitelabelRateLimitstringnoCustomized Response Page for requests after a rate limit is breached.

Outputs#

Computed outputs are produced by the provider. They are not constructor arguments.

PropertyTypeComputedDescription
accessListsPullzoneShieldAccessList (output)[]no
botCategorizationsPullzoneShieldBotCategorization (output)[]no
botDetectionPullzoneShieldBotDetection (output)noConfigures Bot Detection settings.
ddosPullzoneShieldDdos (output)noConfigures DDoS settings.
pullzonenumbernoThe ID of the linked pullzone.
pullzoneShieldIdnumberyesThe ID of the Bunny Shield.
tierstringnoOptions: Advanced, Basic, Business, Enterprise
uploadScanningAntivirusstringnoScan file uploads for viruses, trojans, ransomware, and other forms of malware. Options: Block, Disable, Log
uploadScanningCsamstringnoScan file uploads for Child Sexual Abuse Material. Options: Block, Disable, Log
wafPullzoneShieldWaf (output)noConfigures WAF settings.
whitelabelbooleannoReplace our bunny.net branded block and challenge pages with a white-labelled experience.
whitelabelBlockstringnoCustomized Response Page for requests blocked by WAF, access list or bot detection.
whitelabelChallengestringnoCustomized Response Page for challenged requests.
whitelabelRateLimitstringnoCustomized Response Page for requests after a rate limit is breached.

PullzoneShieldAccessList (input)#

Input object PullzoneShieldAccessList. Fields below belong to this object, not to the parent.

PropertyTypeRequiredDescription
actionstringyesOptions: Allow, Block, Bypass, Challenge, Log
idnumberyesThe ID of the Access List.

PullzoneShieldBotCategorization (input)#

Input object PullzoneShieldBotCategorization. Fields below belong to this object, not to the parent.

PropertyTypeRequiredDescription
actionstringyesOptions: Allow, Block, Ignore
categorystringyesOptions: AIScraper, AITool, Ads, Preview, SEO, Social, Tool
overridesPullzoneShieldBotCategorizationOverride (input)[]noOverride actions for specific bots.

PullzoneShieldBotCategorizationOverride (input)#

Input object PullzoneShieldBotCategorizationOverride. Fields below belong to this object, not to the parent.

PropertyTypeRequiredDescription
actionstringno
botstringno

PullzoneShieldBotDetection (input)#

Input object PullzoneShieldBotDetection. Fields below belong to this object, not to the parent.

PropertyTypeRequiredDescription
complexFingerprintingbooleannoCombines advanced entropy analysis and cross-session consistency.
fingerprintAggressionnumbernoControls how assertively unusual fingerprints are treated as bots.
fingerprintSensitivitynumbernoAdjusts how precisely browsers are checked for signs of automation.
ipSensitivitynumbernoMonitors IP behaviour, reputation, and rate patterns.
modestringnoIndicates the mode the Bot Detection engine is running. Options: Challenge, Log
requestIntegritynumbernoAnalyzes request headers, query structure, and protocol anomalies.

PullzoneShieldDdos (input)#

Input object PullzoneShieldDdos. Fields below belong to this object, not to the parent.

PropertyTypeRequiredDescription
challengeWindownumbernoThe window of time a visitor can access your website after passing a challenge. Once the timeout expires, they'll face a new challenge.
levelstringyesOptions: Asleep, Extreme, High, Low, Medium

PullzoneShieldWaf (input)#

Input object PullzoneShieldWaf. Fields below belong to this object, not to the parent.

PropertyTypeRequiredDescription
allowedHttpMethodsstring[]noIndicates allowed HTTP methods.
allowedHttpVersionsstring[]noIndicates allowed HTTP versions.
allowedRequestContentTypesstring[]noIndicates allowed values for request Content-Type.
blockingSensitivitynumbernoDetermines which severity level of rules will block requests.
bodyLimitRequeststringnoDetermines the action to take when the request body length exceeds your plan limit. Options: Block, Ignore, Log
bodyLimitResponsestringnoDetermines the action to take when the response body length exceeds your plan limit. Options: Block, Ignore, Log
detectionSensitivitynumbernoDetermines which severity level of rules will trigger a detection log.
enabledbooleanyesIndicates whether the WAF (Web Application Firewall) is enabled.
executionSensitivitynumbernoDetermines which severity level of rules will trigger the rules and their action.
logHeadersbooleannoWhen enabled, detected WAF audit logs will contain the full list of request headers sent during the request.
logHeadersExcludedsstring[]noThe list of headers excluded from the logs. They will still be used for processing WAF rules.
modestringnoIndicates the mode the engine is running. Options: Block, Log
realtimeThreatIntelligencebooleannoReal-time Threat Intelligence delivers zero-day protection by instantly detecting and blocking emerging threats.
rulesDisabledsstring[]noList of disabled WAF rules.
rulesLogonliesstring[]noList of WAF rules that will not be blocked, but will be logged when triggered.

PullzoneShieldAccessList (output)#

Output object PullzoneShieldAccessList. Fields below belong to this object.

PropertyTypeAlways presentDescription
actionstringyesOptions: Allow, Block, Bypass, Challenge, Log
idnumberyesThe ID of the Access List.

PullzoneShieldBotCategorization (output)#

Output object PullzoneShieldBotCategorization. Fields below belong to this object.

PropertyTypeAlways presentDescription
actionstringyesOptions: Allow, Block, Ignore
categorystringyesOptions: AIScraper, AITool, Ads, Preview, SEO, Social, Tool
overridesPullzoneShieldBotCategorizationOverride (output)[]yesOverride actions for specific bots.

PullzoneShieldBotCategorizationOverride (output)#

Output object PullzoneShieldBotCategorizationOverride. Fields below belong to this object.

PropertyTypeAlways presentDescription
actionstringno
botstringno

PullzoneShieldBotDetection (output)#

Output object PullzoneShieldBotDetection. Fields below belong to this object.

PropertyTypeAlways presentDescription
complexFingerprintingbooleanyesCombines advanced entropy analysis and cross-session consistency.
fingerprintAggressionnumberyesControls how assertively unusual fingerprints are treated as bots.
fingerprintSensitivitynumberyesAdjusts how precisely browsers are checked for signs of automation.
ipSensitivitynumberyesMonitors IP behaviour, reputation, and rate patterns.
modestringyesIndicates the mode the Bot Detection engine is running. Options: Challenge, Log
requestIntegritynumberyesAnalyzes request headers, query structure, and protocol anomalies.

PullzoneShieldDdos (output)#

Output object PullzoneShieldDdos. Fields below belong to this object.

PropertyTypeAlways presentDescription
challengeWindownumberyesThe window of time a visitor can access your website after passing a challenge. Once the timeout expires, they'll face a new challenge.
levelstringyesOptions: Asleep, Extreme, High, Low, Medium

PullzoneShieldWaf (output)#

Output object PullzoneShieldWaf. Fields below belong to this object.

PropertyTypeAlways presentDescription
allowedHttpMethodsstring[]yesIndicates allowed HTTP methods.
allowedHttpVersionsstring[]yesIndicates allowed HTTP versions.
allowedRequestContentTypesstring[]yesIndicates allowed values for request Content-Type.
blockingSensitivitynumberyesDetermines which severity level of rules will block requests.
bodyLimitRequeststringyesDetermines the action to take when the request body length exceeds your plan limit. Options: Block, Ignore, Log
bodyLimitResponsestringyesDetermines the action to take when the response body length exceeds your plan limit. Options: Block, Ignore, Log
detectionSensitivitynumberyesDetermines which severity level of rules will trigger a detection log.
enabledbooleanyesIndicates whether the WAF (Web Application Firewall) is enabled.
executionSensitivitynumberyesDetermines which severity level of rules will trigger the rules and their action.
logHeadersbooleanyesWhen enabled, detected WAF audit logs will contain the full list of request headers sent during the request.
logHeadersExcludedsstring[]yesThe list of headers excluded from the logs. They will still be used for processing WAF rules.
modestringyesIndicates the mode the engine is running. Options: Block, Log
realtimeThreatIntelligencebooleanyesReal-time Threat Intelligence delivers zero-day protection by instantly detecting and blocking emerging threats.
rulesDisabledsstring[]yesList of disabled WAF rules.
rulesLogonliesstring[]yesList of WAF rules that will not be blocked, but will be logged when triggered.