Hướng dẫn giải pháp Solution guide មគ្គុទ្ទេសករណ៍ដំណោះស្រាយ Application Services Application Services Application Services ~10 phút ~10 min ~10 នាទី Đồng bộ 2026-06-10 Synced 2026-06-10 ធ្វើសមកាល 2026-06-10

Ngăn chặn các bot độc hại trong khi cho phép lưu lượng truy cập hợp pháp (Miễn phí, Chuyên nghiệp và Kinh doanh) Stop malicious bots while allowing legitimate traffic (Free, Pro, and Business) កាត់បន្ថយប្លាស្ទិចដែលមានគោលបំណងក្នុងពេលដែលអនុញ្ញាតការដឹកជញ្ជូនដែលមានគោលបំណង (ដោយឥតគិតថ្លៃ, អ្នកជំនាញនិងពាណិជ្ជកម្ម)

Hướng dẫn chi tiết đồng bộ từ docs Cloudflare — mỗi section có backlink tới đúng vị trí trên trang gốc. Detailed guide synced from Cloudflare docs — each section links to the matching anchor on the official page. មគ្គុទ្ទេសក៍លម្អិតធ្វើសមកាលពី docs Cloudflare — ផ្នែកនីមួយៗមានតំណទៅទីតាំងត្រូវគ្នានៅទំព័រផ្លូវការ។

← Danh mục ← Catalog ← បញ្ជី

Giải thích nhanh Quick context បរិបទរហ័ស

Thuộc nhóm Application Services — tập trung bảo vệ, tăng tốc và vận hành ứng dụng/web phía trước origin. Tutorial «Stop malicious bots while allowing legitimate traffic (Free, Pro, và Business)» giúp bạn làm quen luồng triển khai thật — phù hợp đọc trước khi mở tài liệu gốc tiếng Anh. Đọc phần tóm tắt và lưu ý trước — sau đó mở docs gốc để copy lệnh và cấu hình chi tiết.

Block malicious bots while allowing legitimate traffic using Bot Fight Mode, Turnstile, custom rules, and rate limiting on Free, Pro, and Business plans.

ការកាត់បន្ថយការកាត់បន្ថយការកាត់បន្ថយការកាត់បន្ថយការកាត់បន្ថយការកាត់បន្ថយការកាត់បន្ថយការកាត់បន្ថយការកាត់បន្ថយការកាត់បន្ថយការកាត់បន្ថយការកាត់បន្ថយការកាត់បន្ថយការកាត់បន្ថយការកាត់បន្ថយការកាត់បន្ថយការកាត់បន្ថយការកាត់បន្ថយការកាត់បន្ថយការកាត់បន្ថយការកាត់បន្ថយការកាត់បន្ថយការកាត់បន្ថយការកាត់បន្ថយការកាត់បន្ថយការកាត់បន្ថយការកាត់បន្ថយការកាត់បន្ថយការកាត់បន្ថយការកាត់បន្ថយការកាត់បន្ថយការកាត់បន្ថយការកាត់បន្ថយ

Lưu ý Note ចំណាំ

Lưu ý trước khi làm Notes before you start ចំណាំមុនពេលចាប់ផ្តើម

  • Đây là bản tóm tắt trên Orange Cloud Learning Hub — không thay thế tài liệu chính thức.
  • Luôn mở liên kết «Tài liệu gốc» bên dưới khi cần lệnh CLI, snippet code và ảnh minh họa đầy đủ.
  • Docs Cloudflare cập nhật thường xuyên — đối chiếu ngày «Rà soát lần cuối» trên trang gốc khi triển khai production.
  • This is a summary on Orange Cloud Learning Hub — it does not replace the official documentation.
  • Open the Official docs link below for CLI commands, code snippets, and full screenshots.
  • Cloudflare docs change frequently — verify the Last reviewed date on the official page before production use.
  • នេះគឺជាការបញ្ជាក់អំពី Orange Cloud Learning Hub — វាគឺជាការផ្លាស់ប្តូរនៃឯកសារផ្លូវការ។
  • ចុចតំណភ្ជាប់ Docs Official នៅខាងក្រោមសម្រាប់ការបញ្ជា CLI, សៀវភៅកូដនិងរូបថតពេញលេញ។
  • Cloudflare បានផ្លាស់ប្តូរជាធម្មតានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅ។

Overview Overview Overview

Phần «Tổng quan» — đọc hướng dẫn bên dưới, dùng liên kết docs gốc để xem ảnh minh họa và tab cấu hình đầy đủ.

Read the "Overview" section below — open the official docs link for full screenshots and configuration tabs.

អានផ្នែក «Overview» ខាងក្រោម — បើកតំណ docs ផ្លូវការសម្រាប់រូបភាព និង tab កំណត់។

Mở section docs gốc ↗ Open source section ↗ បើកផ្នែក docs ផ្លូវការ ↗
Sự bảo vệ đúng đắn chống lại lưu lượng bot độc hại phụ thuộc vào mô hình lưu lượng truy cập trên trang web của bạn và kế hoạch của bạn. Hướng dẫn này bao gồm một cách tiếp cận layered bằng cách sử dụng Cloudflare Bots, Cloudflare Application Security (còn được gọi là Web Application Firewall hoặc WAF), và Turnstile, từ bảo vệ cơ bản đến các quy tắc tùy chỉnh được nhắm mục tiêu. Quá trình làm việc cốt lõi sử dụng các tính năng trên các gói miễn phí, chuyên nghiệp và doanh nghiệp, với các cuộc gọi cho các tùy chọn doanh nghiệp.
The right defense against malicious bot traffic depends on the traffic patterns on your site and your plan. This guide covers a layered approach using Cloudflare Bots, Cloudflare Application Security (also known as Web Application Firewall or WAF), and Turnstile, from baseline protection to targeted custom rules. The core workflow uses features on Free, Pro, and Business plans, with callouts for Enterprise options.
ការពារត្រឹមត្រូវប្រឆាំងនឹងការដឹកជញ្ជូន bot ខុសគ្នានៃការដឹកជញ្ជូននៅលើគេហទំព័ររបស់អ្នកនិងគម្រោងរបស់អ្នក។ វគ្គបណ្តុះបណ្តាលនេះគ្របដណ្តប់វិធីសាស្រ្តដែលប្រើ Cloudflare Bots, Cloudflare Application Security (គេស្គាល់ផងដែរថា Web Application Firewall ឬ WAF) និង Turnstile, ពីការការពារបន្ទាត់មូលដ្ឋានទៅនឹងច្បាប់ផ្ទាល់ខ្លួន។ ប្រព័ន្ធប្រតិបត្តិការទូទាត់នេះប្រើប្រាស់បច្ចុប្បន្នភាពក្នុងការទូទាត់ដោយឥតគិតថ្លៃ, ទូទាត់ដោយឥតគិតថ្លៃ, ទូទាត់ដោយឥតគិតថ្លៃ, ទូទាត់ដោយឥតគិតថ្លៃនិងទូទាត់ដោយឥតគិតថ្លៃដោយឥតគិតថ្លៃ។
Hầu hết các thủ tục trong hướng dẫn này được cấu hình theo tên miền hoặc zone. Chọn tên miền của bạn trong bảng điều khiển Cloudflare trước khi bắt đầu. Turnstile là ngoại lệ: widget được cấu hình ở cấp độ tài khoản.
Most procedures in this guide are configured per domain or zone. Select your domain in the Cloudflare dashboard before starting. Turnstile is the exception: widgets are configured at the account level.
ភាគច្រើននៃដំណើរការនៅក្នុងឧបករណ៍នេះត្រូវបានកំណត់តាមតំបន់ឬ zone ។ សូមជ្រើសរើសឧបករណ៍របស់អ្នកនៅក្នុងឧបករណ៍ Cloudflare មុនពេលចាប់ផ្តើម។ Turnstile គឺជាការប៉ះពាល់: widgets ត្រូវបានកំណត់នៅលើកម្រិតគណនី។

Liên kết liên quan (docs Cloudflare) Related links (Cloudflare docs) តំណពាក់ព័ន្ធ (docs Cloudflare)

Kiểm tra lưu lượng bot của bạn Review your bot traffic ពិនិត្យឡើងវិញការដឹកជញ្ជូន bot របស់អ្នក

Phần «Review your bot traffic» — đọc hướng dẫn bên dưới, dùng liên kết docs gốc để xem ảnh minh họa và tab cấu hình đầy đủ.

Read the "Review your bot traffic" section below — open the official docs link for full screenshots and configuration tabs.

អានផ្នែក «ពិនិត្យឡើងវិញការដឹកជញ្ជូន bot របស់អ្នក» ខាងក្រោម — បើកតំណ docs ផ្លូវការសម្រាប់រូបភាព និង tab កំណត់។

Mở section docs gốc ↗ Open source section ↗ បើកផ្នែក docs ផ្លូវការ ↗
Trước khi bạn thay đổi bất kỳ cài đặt bot nào, hãy xem xét dữ liệu lưu lượng truy cập của bạn để hiểu những gì các bot đang làm trên trang web của bạn.
Before you change any bot settings, review your traffic data to understand what bots are doing on your site.
មុនពេលដែលអ្នកផ្លាស់ប្តូរកំណត់ bot របស់អ្នក, សូមពិនិត្យមើលទិន្នន័យការដឹកជញ្ជូនរបស់អ្នកដើម្បីយល់ដឹងអំពីអ្វីដែល bots បានធ្វើនៅលើគេហទំព័ររបស់អ្នក។

Tìm robot phân tích của bạn Find your bot analytics សូមស្វែងរក Bot Analytics របស់អ្នក

Phần «Find your bot analytics» — đọc hướng dẫn bên dưới, dùng liên kết docs gốc để xem ảnh minh họa và tab cấu hình đầy đủ.

Read the "Find your bot analytics" section below — open the official docs link for full screenshots and configuration tabs.

អានផ្នែក «សូមស្វែងរក Bot Analytics របស់អ្នក» ខាងក្រោម — បើកតំណ docs ផ្លូវការសម្រាប់រូបភាព និង tab កំណត់។

Mở section docs gốc ↗ Open source section ↗ បើកផ្នែក docs ផ្លូវការ ↗
Bot analytics cho bạn thấy bao nhiêu lưu lượng truy cập của bạn được tự động hóa, mà pages bot nhắm mục tiêu, và làm thế nào Cloudflare điểm mỗi yêu cầu.
Bot analytics show you how much of your traffic is automated, which pages bots target, and how Cloudflare scores each request.
Bot analytics បានបង្ហាញឱ្យអ្នកពីរបៀបដែលការដឹកជញ្ជូនរបស់អ្នកគឺដោយស្វ័យប្រវត្តិ, pages bots ដែលមានតម្រូវការ, និងរបៀបដែល Cloudflare បានកំណត់តម្រូវការទាំងអស់។
Bot Analytics yêu cầu kế hoạch kinh doanh hoặc cao hơn
Bot Analytics requires a Business plan or above
Bot Analytics គម្រោងរចនាសម្ព័ន្ធអាជីវកម្មឬច្រើនជាងនេះ
Dữ liệu phân phối điểm số bot và phân tích bot chi tiết có sẵn trên các gói Business và Enterprise. Người dùng gói miễn phí và Pro có thể xem xét các số liệu bảo mật cơ bản thông qua Security Events. Đối với khả năng phân tích bot đầy đủ, hãy tham khảo Bot Analytics.
Bot score distribution data and detailed bot analytics are available on Business and Enterprise plans. Free and Pro plan users can review basic security metrics through Security Events. For full bot analytics capabilities, refer to Bot Analytics.
ទិន្នន័យផ្លាស់ប្តូរកំណត់កំណត់កំណត់កំណត់កំណត់កំណត់កំណត់កំណត់កំណត់កំណត់កំណត់កំណត់កំណត់កំណត់កំណត់កំណត់កំណត់កំណត់កំណត់កំណត់កំណត់កំណត់កំណត់កំណត់កំណត់កំណត់កំណត់កំណត់កំណត់កំណត់កំណត់កំណត់កំណត់កំណត់កំណត់កំណត់កំណត់កំណត់កំណត់កំណត់កំណត់កំណត់កំណត់កំណត់កំណត់។ អ្នកប្រើទូទាត់ដោយឥតគិតថ្លៃនិងប្រព័ន្ធប្រតិបត្តិការ Pro អាចមើលទំហំសុវត្ថិភាពជាមូលដ្ឋានតាមរយៈ Security Events ។ ប្រសិនបើអ្នកមានលក្ខណៈពិសេសពិសេសក្នុងការពិនិត្យមើល Bot Analytics ។
  1. Trong bảng điều khiển Cloudflare, đi đến trang Analytics.
  1. In the Cloudflare dashboard, go to the Analytics page.
  1. ក្នុងប្រព័ន្ធប្រតិបត្តិការ Cloudflare សូមចូលទៅក្នុងទំព័រ Analytics ។
  1. Chọn tab Bot analysis
  1. Select the Bot analysis tab.
  1. សូមចុច Bot analysis ។
  1. Đăng nhập vào Cloudflare dashboard ↗ và chọn tài khoản và miền của bạn.
  2. Đi đến Security \> Bots.
  1. Log in to the Cloudflare dashboard ↗ and select your account and domain.
  2. Go to Security \> Bots.
  1. ចុចលើ Cloudflare dashboard ↗ និងជ្រើសរើសគណនីនិងតំបន់របស់អ្នក។
  2. ចុចទៅ Security \> Bots ។
Xem lại những điều sau:
Review the following:
ពិនិត្យឡើងវិញដូចខាងក្រោម:
  • Bot score distribution chart: Điểm gần hơn 1 cho thấy lưu lượng truy cập tự động. Điểm gần hơn 99 cho thấy giao thông con người.
  • Top requested paths: Điểm cuối nào nhận được lưu lượng bot nhiều nhất. Đăng nhập pages, API điểm cuối, và dòng thanh toán là mục tiêu phổ biến.
  • Traffic patterns: Sự gia tăng đột ngột trong lưu lượng truy cập có điểm số thấp, các đại lý người dùng cụ thể xuất hiện với khối lượng cao, hoặc sự tập trung địa lý của các yêu cầu có thể chỉ ra hoạt động của bot đáng để điều tra.
  • Bot score distribution chart: Scores closer to 1 indicate automated traffic. Scores closer to 99 indicate human traffic.
  • Top requested paths: Which endpoints receive the most bot traffic. Login pages, API endpoints, and checkout flows are common targets.
  • Traffic patterns: Sudden spikes in low-score traffic, specific user agents appearing at high volume, or geographic concentration of requests can indicate bot activity worth investigating.
  • Bot score distribution chart: កុំព្យូទ័រដែលមានកម្រិតខ្ពស់ជាង 1 បានបង្ហាញពីការដឹកជញ្ជូនដោយស្វ័យប្រវត្តិ។ កុំព្យូទ័រដែលមានកម្រិតខ្ពស់ជាង 99 បានបង្ហាញពីការដឹកជញ្ជូនមនុស្ស។
  • Top requested paths: ឧបករណ៍បញ្ចប់ដែលទទួលបានការដឹកជញ្ជូន bot ច្រើនបំផុត។ ដំណឹង pages, ដំណឹង API និងដំណឹងការទូទាត់គឺជាតម្រូវការពេញលេញ។
  • Traffic patterns: ការកើនឡើងយ៉ាងឆាប់រហ័សនៅក្នុងការដឹកជញ្ជូនដែលមានកម្រិតខ្ពស់, អេក្រង់អ្នកប្រើប្រាស់ពិសេសដែលមានកម្រិតខ្ពស់, ឬកម្រិតខ្ពស់នៃតម្រូវការអាចបង្ហាញថាមពល bot ដែលត្រូវការការស្រាវជ្រាវ។

Liên kết liên quan (docs Cloudflare) Related links (Cloudflare docs) តំណពាក់ព័ន្ធ (docs Cloudflare)

Hiểu các loại bot Understand bot categories ការយល់ដឹងអំពីប្រភេទ bot

Phần «Understand bot categories» — đọc hướng dẫn bên dưới, dùng liên kết docs gốc để xem ảnh minh họa và tab cấu hình đầy đủ.

Read the "Understand bot categories" section below — open the official docs link for full screenshots and configuration tabs.

អានផ្នែក «ការយល់ដឹងអំពីប្រភេទ bot» ខាងក្រោម — បើកតំណ docs ផ្លូវការសម្រាប់រូបភាព និង tab កំណត់។

Mở section docs gốc ↗ Open source section ↗ បើកផ្នែក docs ផ្លូវការ ↗
Cloudflare phân loại lưu lượng bot thành các loại dựa trên điểm số bot và trạng thái xác minh:
Cloudflare classifies bot traffic into categories based on bot scores and verification status:
Cloudflare បានប្រៀបធៀបការដឹកជញ្ជូន bot ទៅក្នុងប្រភេទដោយផ្អែកលើកម្រិត bot និងស្ថានភាពត្រួតពិនិត្យ:
  • Verified bots: Crawlers và dịch vụ mà Cloudflare đã xác nhận là hợp pháp, chẳng hạn như Googlebot, Bingbot, và giám sát thời gian hoạt động. Cloudflare duy trì verified bot list với các yêu cầu nghiêm ngặt.
  • Automated (1 điểm): Cloudflare là khá chắc chắn yêu cầu được tự động hóa.
  • Likely automated (2-29 điểm): Có thể là một bot. Thể loại này và Tự động là mục tiêu chính cho các quy tắc bảo mật, bao gồm các scraper, công cụ điền thông tin và người gửi thư rác.
  • Likely human (score 30-99): Những yêu cầu này dường như đến từ người dùng thực sự. Đừng thách thức hoặc chặn giao thông này.
  • Verified bots: Crawlers and services that Cloudflare has confirmed as legitimate, such as Googlebot, Bingbot, and uptime monitors. Cloudflare maintains a verified bot list with strict requirements.
  • Automated (score 1): Cloudflare is quite certain the request is automated.
  • Likely automated (scores 2-29): Probably a bot. This category and Automated are the primary targets for security rules, including scrapers, credential stuffing tools, and spam submitters.
  • Likely human (scores 30-99): These requests appear to come from real users. Do not challenge or block this traffic.
  • Verified bots: Crawlers និងសេវាកម្មដែល Cloudflare បានបញ្ជាក់ថាជាការពិតប្រាកដដូចជា Googlebot, Bingbot និងការត្រួតពិនិត្យអតិបរមា។ Cloudflare បានរក្សាទុក verified bot list ជាមួយនឹងតម្រូវការខ្ពស់។
  • Automated (កម្រិត 1): Cloudflare គឺជាការពិតប្រាកដយ៉ាងណាក៏ដោយតម្រូវការនេះគឺដោយស្វ័យប្រវត្តិ។
  • Likely automated (កំហុស 2-29): អាចជា bot ។ ប្រភេទនេះនិងដោយស្វ័យប្រវត្តិគឺជាតម្រូវការសំខាន់សម្រាប់ច្បាប់សុវត្ថិភាពរួមបញ្ចូលទាំង scrapers, ឧបករណ៍បំពេញវិញ្ញាបនប័ត្រនិងអ្នកដឹកជញ្ជូនអាសអាភាស។
  • Likely human (កម្រិត 30-99): ការស្វែងរកទាំងនេះបង្ហាញពីអ្នកប្រើពិតប្រាកដ។ មិនធ្វើការឬកាត់បន្ថយការដឹកជញ្ជូននេះ។

Liên kết liên quan (docs Cloudflare) Related links (Cloudflare docs) តំណពាក់ព័ន្ធ (docs Cloudflare)

Chặn lưu lượng truy cập tự động với Bot Fight Mode Block automated traffic with Bot Fight Mode ការកាត់បន្ថយការដឹកជញ្ជូនដោយស្វ័យប្រវត្តិជាមួយ Bot Fight Mode

Phần «Block automated traffic với Bot Fight Mode» — đọc hướng dẫn bên dưới, dùng liên kết docs gốc để xem ảnh minh họa và tab cấu hình đầy đủ.

Read the "Block automated traffic with Bot Fight Mode" section below — open the official docs link for full screenshots and configuration tabs.

អានផ្នែក «ការកាត់បន្ថយការដឹកជញ្ជូនដោយស្វ័យប្រវត្តិជាមួយ Bot Fight Mode» ខាងក្រោម — បើកតំណ docs ផ្លូវការសម្រាប់រូបភាព និង tab កំណត់។

Mở section docs gốc ↗ Open source section ↗ បើកផ្នែក docs ផ្លូវការ ↗
Bot Fight Mode xác định các yêu cầu phù hợp với các mô hình bot đã biết và đưa ra một thách thức tính toán. Nó giảm lưu lượng truy cập tự động trên toàn bộ trang web của bạn mà không yêu cầu bạn viết bất kỳ quy tắc nào.
Bot Fight Mode identifies requests that match known bot patterns and issues a computational challenge. It reduces automated traffic across your entire site without requiring you to write any rules.
Bot Fight Mode អនុញ្ញាតឱ្យកំណត់តម្រូវការដែលសមរម្យជាមួយនឹងគំរូ bot ដែលបានដឹងហើយធ្វើការបញ្ជាទិន្នន័យ។ វាត្រូវបានកាត់បន្ថយការដឹកជញ្ជូនដោយស្វ័យប្រវត្តិនៅលើគេហទំព័ររបស់អ្នកទាំងអស់ដោយគ្មានការតម្រូវឱ្យអ្នកសរសេរច្បាប់ណាមួយ។

Liên kết liên quan (docs Cloudflare) Related links (Cloudflare docs) តំណពាក់ព័ន្ធ (docs Cloudflare)

Bot Fight Mode làm gì What Bot Fight Mode does អ្វីដែល Bot Fight Mode ធ្វើ

Phần «What Bot Fight Mode does» — đọc hướng dẫn bên dưới, dùng liên kết docs gốc để xem ảnh minh họa và tab cấu hình đầy đủ.

Read the "What Bot Fight Mode does" section below — open the official docs link for full screenshots and configuration tabs.

អានផ្នែក «អ្វីដែល Bot Fight Mode ធ្វើ» ខាងក្រោម — បើកតំណ docs ផ្លូវការសម្រាប់រូបភាព និង tab កំណត់។

Mở section docs gốc ↗ Open source section ↗ បើកផ្នែក docs ផ្លូវការ ↗
Bot Fight Mode được bao gồm với các gói miễn phí. Khi được kích hoạt, nó:
Bot Fight Mode is included with Free plans. When enabled, it:
Bot Fight Mode ត្រូវបានរួមបញ្ចូលជាមួយគម្រោងដោយឥតគិតថ្លៃ។ នៅពេលដែលវាបានអនុញ្ញាត:
  • Xác định giao thông phù hợp với các mô hình của các bot đã biết
  • Tạo ra những thách thức đắt tiền về mặt tính toán để đáp ứng với các bot này
  • Bảo vệ toàn bộ tên miền mà không có hạn chế điểm cuối
  • Không thể tùy chỉnh, điều chỉnh hoặc cấu hình lại thông qua các quy tắc tùy chỉnh
  • Không thể bỏ qua với custom rule Skip hành động. Nếu Bot Fight Mode thách thức một yêu cầu bạn muốn cho phép, bạn có thể tắt Bot Fight Mode hoặc nâng cấp lên Super Bot Fight Mode để kiểm soát chi tiết hơn.
  • Identifies traffic matching patterns of known bots
  • Issues computationally expensive challenges in response to these bots
  • Protects entire domains without endpoint restrictions
  • Cannot be customized, adjusted, or reconfigured via custom rules
  • Cannot be bypassed with custom rule Skip actions. If Bot Fight Mode challenges a request you want to allow, you can turn off Bot Fight Mode or upgrade to Super Bot Fight Mode for more granular control.
  • ការយល់ដឹងអំពីរបៀបដែលបង្វិលការដឹកជញ្ជូនបង្វិលបង្វិលបង្វិលបង្វិលបង្វិលបង្វិលបង្វិល
  • កម្រិតខ្ពស់នៃការបញ្ចូលគ្នានៃការបញ្ចូលគ្នានៃការបញ្ចូលគ្នានៃការបញ្ចូល
  • ការពារអាសយដ្ឋានទាំងអស់ដោយគ្មានការកាត់បន្ថយ endpoint
  • មិនអាចត្រូវបានកែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រ
  • Cannot be bypassed with custom rule Skip actions. If Bot Fight Mode challenges a request you want to allow, you can turn off Bot Fight Mode or upgrade to Super Bot Fight Mode for more granular control.
Để biết thêm chi tiết, hãy tham khảo Bot Fight Mode considerations.
For more details, refer to Bot Fight Mode considerations.
សម្រាប់ព័ត៌មានបន្ថែមសូមមើល Bot Fight Mode considerations ។

Liên kết liên quan (docs Cloudflare) Related links (Cloudflare docs) តំណពាក់ព័ន្ធ (docs Cloudflare)

Bật chế độ Bot Fight Mode (Plan miễn phí) Turn on Bot Fight Mode (Free plan) ចុច Bot Fight Mode (កម្មវិធីដោយឥតគិតថ្លៃ)

Phần «Turn on Bot Fight Mode (Free plan)» — đọc hướng dẫn bên dưới, dùng liên kết docs gốc để xem ảnh minh họa và tab cấu hình đầy đủ.

Read the "Turn on Bot Fight Mode (Free plan)" section below — open the official docs link for full screenshots and configuration tabs.

អានផ្នែក «ចុច Bot Fight Mode (កម្មវិធីដោយឥតគិតថ្លៃ)» ខាងក្រោម — បើកតំណ docs ផ្លូវការសម្រាប់រូបភាព និង tab កំណត់។

Mở section docs gốc ↗ Open source section ↗ បើកផ្នែក docs ផ្លូវការ ↗
  1. Trong bảng điều khiển Cloudflare, đi đến trang Security Settings.
  1. In the Cloudflare dashboard, go to the Security Settings page.
  1. ក្នុងប្រព័ន្ធប្រតិបត្តិការ Cloudflare សូមចូលទៅក្នុងទំព័រ Security Settings ។
  1. Lọc theo Bot traffic
  2. Đi đến Bot fight mode
  3. Nhấn Bot fight mode vào.
  1. Filter by Bot traffic.
  2. Go to Bot fight mode.
  3. Turn Bot fight mode on.
  1. កញ្ចប់ដោយ Bot traffic
  2. សូមចូលទៅ Bot fight mode ។
  3. ចុច Bot fight mode នៅលើ។
  1. Đăng nhập vào Cloudflare dashboard ↗ và chọn tài khoản và tên miền của bạn.
  2. Đi đến Security \> Bots.
  3. Đối với Bot Fight Mode, hãy chọn On.
  1. Log in to the Cloudflare dashboard ↗, and select your account and domain.
  2. Go to Security \> Bots.
  3. For Bot Fight Mode, select On.
  1. ចុច Cloudflare dashboard ↗ ហើយជ្រើសគណនីរបស់អ្នកនិងតំបន់បណ្ដាញរបស់អ្នក។
  2. ចុចទៅ Security \> Bots ។
  3. សម្រាប់ Bot Fight Mode ចុច On ។

Chức năng Super Bot Fight Mode (Pro, Business và Enterprise) Enable Super Bot Fight Mode (Pro, Business, and Enterprise) ប្រព័ន្ធ ប្រតិបត្តិការ Super Bot Fight Mode (Pro, Business និង Enterprise)

Phần «Enable Super Bot Fight Mode (Pro, Business, và Enterprise)» — đọc hướng dẫn bên dưới, dùng liên kết docs gốc để xem ảnh minh họa và tab cấu hình đầy đủ.

Read the "Enable Super Bot Fight Mode (Pro, Business, and Enterprise)" section below — open the official docs link for full screenshots and configuration tabs.

អានផ្នែក «ប្រព័ន្ធ ប្រតិបត្តិការ Super Bot Fight Mode (Pro, Business និង Enterprise)» ខាងក្រោម — បើកតំណ docs ផ្លូវការសម្រាប់រូបភាព និង tab កំណត់។

Mở section docs gốc ↗ Open source section ↗ បើកផ្នែក docs ផ្លូវការ ↗
Chế độ Super Bot Fight thêm xác minh bot allowlisting, hành động theo thể loại, bảo vệ tài nguyên tĩnh, và JavaScript phát hiện.
Super Bot Fight Mode adds verified bot allowlisting, per-category actions, static resource protection, and JavaScript detections.
Super Bot Fight Mode ផ្តល់នូវការអនុញ្ញាត bot ដែលបានត្រួតពិនិត្យ, ការប្រតិបត្តិការ per-category, ការការពារប្រសិទ្ធិភាពនិងការរកឃើញ JavaScript ។
Nếu bạn đang nâng cấp từ Chế độ Chiến đấu Bot lên Chế độ Chiến đấu Super Bot, bạn phải vô hiệu hóa Chế độ Chiến đấu Bot trong cài đặt Bot của bạn.
If you are upgrading from Bot Fight Mode to Super Bot Fight Mode, you must disable Bot Fight Mode in your Bot settings.
ប្រសិនបើអ្នកកំពុងធ្វើការអភិវឌ្ឍន៍ពី Bot Fight Mode ទៅ Super Bot Fight Mode, អ្នកត្រូវការកាត់បន្ថយ Bot Fight Mode នៅក្នុងកំណត់ Bot របស់អ្នក។
  • Bảng điều khiển cũ: Security \> Bots, và chọn Configure Bot Fight Mode.
  • Bảng điều khiển mới: Security \> Settings. Chọn Bot traffic và tắt Bot fight mode.
  • Old dashboard: Security \> Bots, and select Configure Bot Fight Mode.
  • New dashboard: Security \> Settings. Filter by Bot traffic and turn Bot fight mode off.
  • ប្រព័ន្ធប្រតិបត្តិការទូទៅ: Security & > Bots, និងចុច Configure Bot Fight Mode ។
  • ស្លាកថ្មី: Security \> Settings ។ ចុច Bot traffic ហើយចុច Bot fight mode ។
  1. Trong bảng điều khiển Cloudflare, đi đến trang Security Settings.
  1. In the Cloudflare dashboard, go to the Security Settings page.
  1. ក្នុងប្រព័ន្ធប្រតិបត្តិការ Cloudflare សូមចូលទៅក្នុងទំព័រ Security Settings ។
  1. Lọc theo Bot traffic
  2. Đi đến Super Bot fight mode
  3. Nhấn Super Bot fight mode vào.
  4. Chọn cách miền của bạn nên đáp ứng với các loại lưu lượng truy cập khác nhau bằng cách chọn biểu tượng chỉnh sửa liên quan:
  1. Filter by Bot traffic.
  2. Go to Super Bot fight mode.
  3. Turn Super Bot fight mode on.
  4. Choose how your domain should respond to various types of traffic by selecting the associated edit icon:
  1. កញ្ចប់ដោយ Bot traffic
  2. សូមចូលទៅ Super Bot fight mode ។
  3. ចុច Super Bot fight mode នៅលើ។
  4. ជ្រើសរើសរបៀបដែលអាសយដ្ឋានរបស់អ្នកគួរឱ្យឆ្លើយតបទៅនឹងប្រភេទផ្សេងគ្នានៃការដឹកជញ្ជូនដោយជ្រើសរើសអេឡិចត្រូនិ edit ដែលរួមបញ្ចូលគ្នា:
Để biết thêm chi tiết về các bot đã được xác minh, hãy tham khảo Verified Bots. Để biết thêm chi tiết về các loại tệp được hỗ trợ, hãy tham khảo Static resource protection. Để biết thêm chi tiết về tiêm mã vô hình, hãy xem JavaScript detections. Để biết thêm chi tiết về tối ưu hóa WordPress, hãy tham khảo Super Bot Fight Mode for WordPress.
For more details on verified bots, refer to Verified Bots. For more details on supported file types, refer to Static resource protection. For more details on invisible code injection, refer to JavaScript detections. For more details on WordPress optimization, refer to Super Bot Fight Mode for WordPress.
សម្រាប់ព័ត៌មានបន្ថែមអំពី bots ដែលបានត្រួតពិនិត្យមើល Verified Bots ។ សម្រាប់ព័ត៌មានបន្ថែមអំពីប្រភេទឯកសារដែលគាំទ្រមើល Static resource protection ។ សម្រាប់ព័ត៌មានបន្ថែមអំពីការដំឡើងលេខកូដគិតថ្លៃសូមមើល JavaScript detections ។ សម្រាប់ព័ត៌មានបន្ថែមអំពីការធ្វើឱ្យប្រសើរឡើង WordPress សូមមើល Super Bot Fight Mode for WordPress ។
  1. Đăng nhập vào Cloudflare dashboard ↗ và chọn tài khoản và tên miền của bạn.
  2. Đi đến Security \> Bots.
  3. Chọn Configure Super Bot Fight Mode
  4. Chọn cách miền của bạn nên đáp ứng với các loại lưu lượng truy cập khác nhau:
  1. Log in to the Cloudflare dashboard ↗, and select your account and domain.
  2. Go to Security \> Bots.
  3. Select Configure Super Bot Fight Mode.
  4. Choose how your domain should respond to various types of traffic:
  1. ចុច Cloudflare dashboard ↗ ហើយជ្រើសគណនីរបស់អ្នកនិងតំបន់បណ្ដាញរបស់អ្នក។
  2. ចុចទៅ Security \> Bots ។
  3. សូមជ្រើស Configure Super Bot Fight Mode ។
  4. ជ្រើសរើសរបៀបដែលអាសយដ្ឋានរបស់អ្នកគួរឱ្យឆ្លើយតបទៅនឹងប្រភេទផ្សេងគ្នានៃការដឹកជញ្ជូន:
Để biết thêm chi tiết về các bot đã được xác minh, hãy tham khảo Verified Bots. Để biết thêm chi tiết về các loại tệp được hỗ trợ, hãy tham khảo Static resource protection. Để biết thêm chi tiết về tiêm mã vô hình, hãy xem JavaScript detections. Để biết thêm chi tiết về tối ưu hóa WordPress, hãy tham khảo Super Bot Fight Mode for WordPress.
For more details on verified bots, refer to Verified Bots. For more details on supported file types, refer to Static resource protection. For more details on invisible code injection, refer to JavaScript detections. For more details on WordPress optimization, refer to Super Bot Fight Mode for WordPress.
សម្រាប់ព័ត៌មានបន្ថែមអំពី bots ដែលបានត្រួតពិនិត្យមើល Verified Bots ។ សម្រាប់ព័ត៌មានបន្ថែមអំពីប្រភេទឯកសារដែលគាំទ្រមើល Static resource protection ។ សម្រាប់ព័ត៌មានបន្ថែមអំពីការដំឡើងលេខកូដគិតថ្លៃសូមមើល JavaScript detections ។ សម្រាប់ព័ត៌មានបន្ថែមអំពីការធ្វើឱ្យប្រសើរឡើង WordPress សូមមើល Super Bot Fight Mode for WordPress ។
Kế hoạch Availability
Plan availability
គម្រោងអាចរកបាន
Chế độ Super Bot Fight có sẵn trên các gói Pro, Business và Enterprise. Người dùng gói miễn phí có thể sử dụng chế độ Bot Fight Mode để bảo vệ cơ bản. Khách hàng doanh nghiệp cần điểm số bot dựa trên học máy và các quy tắc cho phép / chặn tùy chỉnh có thể thêm Bot Management.
Super Bot Fight Mode is available on Pro, Business, and Enterprise plans. Free plan users can use Bot Fight Mode for baseline protection. Enterprise customers who need machine learning-based bot scoring and custom allow/block rules can add Bot Management.
Super Bot Fight Mode គឺអាចរកបាននៅលើគម្រោង Pro, Business និង Enterprise ។ អ្នកប្រើកម្មវិធីដោយឥតគិតថ្លៃអាចប្រើកម្មវិធី Bot Fight Mode សម្រាប់ការការពារបន្ទាត់ដើម។ អ្នកអតិថិជនអាជីវកម្មដែលត្រូវការកំណត់កុំព្យូទ័រដែលមានមូលដ្ឋានលើការរៀនម៉ាស៊ីននិងច្បាប់អនុញ្ញាត / ប្លុកផ្ទាល់ខ្លួនអាចបន្ថែម Bot Management ។
Warning
Warning
Warning
Nếu tổ chức của bạn sử dụng Cloudflare Tunnel, hãy giữ Definitely Automated đặt thành Allow trong chế độ Super Bot Fight. Nếu không, đường hầm có thể thất bại với lỗi websocket: bad handshake.
If your organization uses Cloudflare Tunnel, keep Definitely Automated set to Allow in Super Bot Fight Mode. Otherwise, tunnels might fail with a websocket: bad handshake error.
ប្រសិនបើប្រព័ន្ធប្រតិបត្តិការរបស់អ្នកប្រើ Cloudflare Tunnel, សូមរក្សាទុក Definitely Automated ទៅ Allow ក្នុងកម្មវិធី Super Bot Fight Mode ។ ប្រសិនបើមិនបានធ្វើដូច្នេះអ្នកអាចជឿទុកចិត្តថាមាន websocket: bad handshake Error ។

Liên kết liên quan (docs Cloudflare) Related links (Cloudflare docs) តំណពាក់ព័ន្ធ (docs Cloudflare)

Bảo vệ các biểu mẫu khỏi sự lạm dụng tự động Protect forms from automated abuse ការពាររូបថតពីការប្រើប្រាស់ដោយស្វ័យប្រវត្តិ

Phần «Bảo vệ forms từ automated abuse» — đọc hướng dẫn bên dưới, dùng liên kết docs gốc để xem ảnh minh họa và tab cấu hình đầy đủ.

Read the "Protect forms from automated abuse" section below — open the official docs link for full screenshots and configuration tabs.

អានផ្នែក «ការពាររូបថតពីការប្រើប្រាស់ដោយស្វ័យប្រវត្តិ» ខាងក្រោម — បើកតំណ docs ផ្លូវការសម្រាប់រូបភាព និង tab កំណត់។

Mở section docs gốc ↗ Open source section ↗ បើកផ្នែក docs ផ្លូវការ ↗
Turnstile và Application Security rate limiting rules bảo vệ các điểm cuối form theo những cách khác nhau và làm việc cùng nhau tốt nhất.
Turnstile and Application Security rate limiting rules protect form endpoints in different ways and work best together.
Turnstile និងកម្មវិធីសុវត្ថិភាព rate limiting rules អនុញ្ញាតឱ្យការពារ form ជាវិធីផ្សេងគ្នានិងធ្វើការល្អបំផុតជាមួយគ្នា។

Liên kết liên quan (docs Cloudflare) Related links (Cloudflare docs) តំណពាក់ព័ន្ធ (docs Cloudflare)

Turnstile so với rate limiting Turnstile versus rate limiting Turnstile នៅលើ rate limiting

Phần «Turnstile versus rate limiting» — đọc hướng dẫn bên dưới, dùng liên kết docs gốc để xem ảnh minh họa và tab cấu hình đầy đủ.

Read the "Turnstile versus rate limiting" section below — open the official docs link for full screenshots and configuration tabs.

អានផ្នែក «Turnstile នៅលើ rate limiting» ខាងក្រោម — បើកតំណ docs ផ្លូវការសម្រាប់រូបភាព និង tab កំណត់។

Mở section docs gốc ↗ Open source section ↗ បើកផ្នែក docs ផ្លូវការ ↗
Turnstile thách thức các bot đáng ngờ trước khi họ có thể gửi form (đăng nhập, đăng nhập, liên hệ hoặc thanh toán), mà không hiển thị cho khách truy cập một CAPTCHA. Nó có thể được nhúng vào bất kỳ trang web nào mà không gửi lưu lượng truy cập thông qua Cloudflare. Sử dụng Turnstile khi bạn cần thách thức tự động form gửi.
Turnstile challenges suspected bots before they can submit a form (login, signup, contact, or checkout), without showing visitors a CAPTCHA. It can be embedded into any website without sending traffic through Cloudflare. Use Turnstile when you need to challenge automated form submissions.
Turnstile គោលបំណងប្លាស្ទិចដែលគួរឱ្យចាប់អារម្មណ៍មុនពេលដែលពួកគេអាចផ្ញើ form (ការចុះឈ្មោះ, ការចុះឈ្មោះ, ការទាក់ទង, ឬការទិញ) ដោយមិនបង្ហាញអ្នកទស្សនា CAPTCHA ។ វាអាចត្រូវបានដំឡើងនៅក្នុងគេហទំព័រណាមួយដោយគ្មានការដឹកជញ្ជូនតាមរយៈ Cloudflare ។ ប្រើ Turnstile នៅពេលដែលអ្នកត្រូវការដើម្បីបម្រើការដឹកជញ្ជូនដោយស្វ័យប្រវត្តិ form ។
Rate limiting cho phép bạn xác định giới hạn tỷ lệ cho các yêu cầu khớp với một biểu thức và action để thực hiện khi các giới hạn đó đạt được. Sử dụng rate limiting để bảo vệ các điểm cuối khỏi lạm dụng, chẳng hạn như các cuộc tấn công bạo lực trên một trang đăng nhập hoặc các cuộc gọi quá mức API từ một máy khách duy nhất.
Rate limiting allows you to define rate limits for requests matching an expression and the action to perform when those limits are reached. Use rate limiting to protect endpoints from abuse, such as brute-force attacks on a login page or excessive API calls from a single client.
Rate limiting អនុញ្ញាតឱ្យអ្នកកំណត់កំណត់តម្លៃសម្រាប់សំណួរដែលសមស្របនឹងការបង្ហាញនិង action ដើម្បីអនុវត្តនៅពេលដែលកំណត់តម្លៃនេះបានកើនឡើង។ ប្រើ rate limiting ដើម្បីការពារបញ្ចប់ពីការទូទាត់, ដូចជាការប្រឆាំងនឹងការប្រឆាំងនឹងការប្រឆាំងនឹងការប្រឆាំងនឹងការប្រឆាំងនឹងការប្រឆាំងនឹងការប្រឆាំងនឹងការប្រឆាំងនឹងការប្រឆាំងនឹងការប្រឆាំងនឹងការប្រឆាំងនឹងការប្រឆាំងនឹងការប្រឆាំងនឹងការប្រឆាំងនឹងការប្រឆាំងនឹងការប្រឆាំងនឹងការប្រឆាំងនឹងការប្រឆាំងនឹងការប្រឆាំងនឹងការប្រឆាំងនឹងការប្រឆាំងនឹងការប្រឆាំងនឹងការប្រឆាំងនឹងការប្រឆាំងនឹងការប្រឆាំងនឹងការប្រឆាំងនឹងការប្រឆាំងនឹងការប្រឆាំងនឹងការប្រឆាំងនឹងការប្រឆាំងនឹងការប្រឆាំងនឹងការប្រឆាំងនឹងការប្រឆាំងនឹងការប្រឆាំងនឹងការប្រឆាំងនឹងការប្រឆាំងនឹង API ។
Cả hai cùng nhau cung cấp bảo hiểm mạnh nhất. Turnstile thách thức gửi tự động ở mức form. Rate limiting bắt các cuộc tấn công khối lượng cao mà bỏ qua hoặc không gặp phải form, chẳng hạn như yêu cầu POST trực tiếp đến điểm cuối mà bỏ qua widget phía khách hàng.
Both together provide the strongest coverage. Turnstile challenges automated submissions at the form level. Rate limiting catches high-volume attacks that bypass or do not encounter the form, such as direct POST requests to the endpoint that skip the client-side widget.
Both together provide the strongest coverage. Turnstile challenges automated submissions at the form level. Rate limiting catches high-volume attacks that bypass or do not encounter the form, such as direct POST requests to the endpoint that skip the client-side widget.

Thêm Turnstile vào form Add Turnstile to a form បន្ថែម Turnstile ទៅ form

Phần «Thêm Turnstile to form» — đọc hướng dẫn bên dưới, dùng liên kết docs gốc để xem ảnh minh họa và tab cấu hình đầy đủ.

Read the "Add Turnstile to a form" section below — open the official docs link for full screenshots and configuration tabs.

អានផ្នែក «បន្ថែម Turnstile ទៅ form» ខាងក្រោម — បើកតំណ docs ផ្លូវការសម្រាប់រូបភាព និង tab កំណត់។

Mở section docs gốc ↗ Open source section ↗ បើកផ្នែក docs ផ្លូវការ ↗
Thêm Turnstile liên quan đến ba bước: tạo một widget, thêm đoạn trích phía khách hàng, và xác nhận token trên máy chủ của bạn.
Adding Turnstile involves three steps: create a widget, add the client-side snippet, and validate the token on your server.
ការបន្ថែម Turnstile រួមបញ្ចូលទាំងបីដំណោះស្រាយ: ការបង្កើតឧបករណ៍, ការបន្ថែមឧបករណ៍ផ្នែកអតិថិជននិងការត្រួតពិនិត្យ token នៅលើបណ្តាញរបស់អ្នក.
Turnstile được cấu hình ở cấp độ tài khoản.
Turnstile is configured at the account level.
Turnstile ត្រូវបានកំណត់នៅក្នុងកម្រិតគណនី។
  1. Trong bảng điều khiển Cloudflare, đi đến trang Turnstile.
  1. In the Cloudflare dashboard, go to the Turnstile page.
  1. ក្នុងប្រព័ន្ធប្រតិបត្តិការ Cloudflare សូមចូលទៅក្នុងទំព័រ Turnstile ។
  1. Chọn Add widget
  2. Điền vào các thông tin cần thiết:
  1. Select Add widget.
  2. Fill out the required information:
  1. សូមជ្រើស Add widget ។
  2. សូមបញ្ជាក់អំពីព័ត៌មានដែលត្រូវការ:
Widget name: Một tên mô tả cho widget của bạn. Hostname management: Các miền mà widget sẽ được sử dụng. * Widget mode: Chọn từ quản lý, không tương tác, hoặc vô hình.
Widget name: A descriptive name for your widget. Hostname management: Domains where the widget will be used. * Widget mode: Choose from Managed, Non-Interactive, or Invisible.
Widget name: ឈ្មោះសៀវភៅសម្រាប់ឧបករណ៍របស់អ្នក។ Hostname management: តំបន់ដែលអ្នកនឹងប្រើ widget នេះ។ * Widget mode: ជ្រើសពី Managed, Non-Interactive ឬ Invisible ។
  1. (Tùy chọn) Cài đặt Pre-clearance support cho các ứng dụng đơn trang.
  2. Chọn Create để lưu widget của bạn.
  3. Sao chép sitekey và khóa bí mật của bạn, và lưu trữ khóa bí mật một cách an toàn.
  1. (Optional) Configure Pre-clearance support for single-page applications.
  2. Select Create to save your widget.
  3. Copy your sitekey and secret key, and store the secret key securely.
  1. (គោលបំណង) ការកំណត់ Pre-clearance support សម្រាប់កម្មវិធីមួយទំព័រ។
  2. ចុច Create ដើម្បីផ្ទុក widget របស់អ្នក។
  3. ចម្លង sitekey និង key secret របស់អ្នកហើយផ្ទុក key secret ជាសុវត្ថិភាព។
Bạn cần cả sitekey và khóa bí mật trong các bước sau.
You need both the sitekey and secret key in the following steps.
អ្នកត្រូវការទាំងមូល sitekey និង secret key នៅក្នុងជំហានខាងក្រោម។
Thêm Turnstile kịch bản và container widget vào form HTML của bạn:
Add the Turnstile script and widget container to your form HTML:
Add the Turnstile script and widget container to your form HTML:
text
<script

  src="https://challenges.cloudflare.com/turnstile/v0/api.js"

  async

  defer

></script>


<form action="/submit" method="POST">

  <!-- Your existing form fields -->

  <div class="cf-turnstile" data-sitekey="<YOUR_SITE_KEY>"></div>

  <button type="submit">Submit</button>

</form>
Thay thế <YOUR<em>SITE</em>KEY> bằng sitekey từ bước trước. Widget hiển thị bên trong div và tạo ra một token khi khách truy cập vượt qua thách thức.
Replace <YOUR<em>SITE</em>KEY> with the sitekey from the previous step. The widget renders inside the div and produces a token when the visitor passes the challenge.
Replace <YOUR<em>SITE</em>KEY> with the sitekey from the previous step. The widget renders inside the div and produces a token when the visitor passes the challenge.
Trước khi xử lý bài gửi form, hãy gửi mã thông báo đến điểm cuối siteverify Turnstile để xác nhận vị khách đã vượt qua thách thức:
Before processing the form submission, send the token to the Turnstile siteverify endpoint to confirm the visitor passed the challenge:
មុនពេលដំណើរការការ form ការដឹកជញ្ជូន, សូមផ្ញើគណនី token ទៅ Turnstile siteverify endpoint ដើម្បីបញ្ជាក់ថាតើអ្នកទស្សនាបានឆ្លងដំណើរការនេះ:
Cửa sổ Terminal
Terminal window
បង្វិល Terminal
text
curl https://challenges.cloudflare.com/turnstile/v0/siteverify \

  --header "Content-Type: application/json" \

  --data '{

  "secret": "<YOUR_SECRET_KEY>",

  "response": "<TURNSTILE_RESPONSE_TOKEN>"

}'
Thay thế <YOUR<em>SECRET</em>KEY> bằng khóa bí mật của bạn và <TURNSTILE<em>RESPONSE</em>TOKEN> bằng giá trị cf-turnstile-response từ bản gửi form. Điểm cuối trả về một đối tượng JSON với trường success. Chỉ xử lý form nếu success là true.
Replace <YOUR<em>SECRET</em>KEY> with your secret key and <TURNSTILE<em>RESPONSE</em>TOKEN> with the cf-turnstile-response value from the form submission. The endpoint returns a JSON object with a success field. Only process the form submission if success is true.
ការផ្លាស់ប្តូរ <YOUR<em>SECRET</em>KEY> ដោយគោលបំណងឯកជនរបស់អ្នកនិង <TURNSTILE<em>RESPONSE</em>TOKEN> ដោយគោលបំណង cf-turnstile-response ពីការផ្តល់ form ។ កុំព្យូទ័រ Endpoint បានបង្ហាញនូវ JSON object ជាមួយនឹងការ success ។ ការដំណើរការ form គឺតែប្រសិនបើ success គឺ true ។
Để biết chi tiết tích hợp đầy đủ, hãy tham khảo Turnstile get started.
For complete integration details, refer to Turnstile get started.
ប្រសិនបើអ្នកមានព័ត៌មានបន្ថែមអំពីការរួមបញ្ចូលទាំងនេះ, សូមមើល Turnstile get started ។

Liên kết liên quan (docs Cloudflare) Related links (Cloudflare docs) តំណពាក់ព័ន្ធ (docs Cloudflare)

Giới hạn khối lượng yêu cầu trên các điểm cuối form với rate limiting Limit request volume on form endpoints with rate limiting ទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំ

Phần «Limit request volume on form endpoints với rate limiting» — đọc hướng dẫn bên dưới, dùng liên kết docs gốc để xem ảnh minh họa và tab cấu hình đầy đủ.

Read the "Limit request volume on form endpoints with rate limiting" section below — open the official docs link for full screenshots and configuration tabs.

អានផ្នែក «ទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំទំហំ» ខាងក្រោម — បើកតំណ docs ផ្លូវការសម្រាប់រូបភាព និង tab កំណត់។

Mở section docs gốc ↗ Open source section ↗ បើកផ្នែក docs ផ្លូវការ ↗
Đối với các điểm cuối đăng nhập, cách tiếp cận rate limiting có cấp độ hoạt động tốt cùng với Turnstile. Ví dụ sau đây từ Rate limiting best practices cho thấy hai quy tắc leo thang phản ứng dựa trên khối lượng các nỗ lực thất bại. Điều chỉnh ngưỡng cho các mô hình lưu lượng truy cập của trang web của bạn.
For login endpoints, a tiered rate limiting approach works well alongside Turnstile. The following example from the Rate limiting best practices shows two rules that escalate the response based on the volume of failed attempts. Adjust the thresholds for your site's traffic patterns.
សម្រាប់ចំណុចចុងបញ្ចប់ការចូលរួម, ការដំណោះស្រាយ rate limiting បានធ្វើការយ៉ាងល្អជាមួយ Turnstile ។ លក្ខណៈសម្បត្តិ Rate limiting best practices ដែលបង្ហាញពីបញ្ហាទាំងពីរដែលបង្កើនការឆ្លើយតបដោយផ្អែកលើទំហំនៃការធ្វើតេស្តដែលមិនបានជោគជ័យ។ ការកែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រ
Các quy tắc cấp rate limiting yêu cầu một kế hoạch kinh doanh hoặc cao hơn
Tiered rate limiting rules require a Business plan or above
គោលដៅ rate limiting ដែលត្រូវការគម្រោងអាជីវកម្មឬច្រើនជាងនេះ
Các quy tắc sử dụng các biểu thức đếm với mã trả lời (chẳng hạn như chỉ đếm 401 và 403 trả lời) yêu cầu một kế hoạch kinh doanh hoặc cao hơn. Trên các gói miễn phí và chuyên nghiệp, bạn có thể tạo các quy tắc đơn giản hơn rate limiting với tính toán dựa trên IP. Xem Rate limiting rules để biết chi tiết về tính sẵn có của kế hoạch.
Rules that use counting expressions with response codes (such as counting only 401 and 403 responses) require a Business plan or above. On Free and Pro plans, you can create simpler rate limiting rules with IP-based counting. Refer to Rate limiting rules for plan availability details.
Rules that use counting expressions with response codes (such as counting only 401 and 403 responses) require a Business plan or above. On Free and Pro plans, you can create simpler rate limiting rules with IP-based counting. Refer to Rate limiting rules for plan availability details.
Short-window rule: Thách thức một IP gửi quá nhiều yêu cầu đăng nhập thất bại trong một cửa sổ ngắn.
Short-window rule: Challenge an IP that sends too many failed login requests in a short window.
Short-window rule: ការជួញដូរ IP ដែលផ្ញើអតិថិជនជាច្រើនដែលបានជួញដូរតាមអតិថិជនដែលបានជួញដូរតាមអតិថិជនដែលបានជួញដូរតាមអតិថិជន។
  1. Trong bảng điều khiển Cloudflare, đi đến Security \> Security rules.
  1. In the Cloudflare dashboard, go to Security \> Security rules.
  1. នៅលើប្រព័ន្ធប្រតិបត្តិការ Cloudflare សូមចូលទៅ Security \> Security rules ។
  1. Chọn Create rule \> Rate limiting rules.
  2. Nhập tên mô tả trong Rule name.
  3. Trong If incoming requests match, chọn Edit expression và nhập: http.request.uri.path eq "/login" and http.request.method eq "POST"
  4. Trong With the same characteristics, chọn IP.
  5. Bật Use custom counting expression và nhập: http.request.uri.path eq "/login" and http.request.method eq "POST" and http.response.code in {401 403}
  6. Trong When rate exceeds, nhập yêu cầu 4 cho 1 minute.
  7. Trong Then take action, chọn Challenge quản lý.
  8. Chọn Deploy
  1. Select Create rule \> Rate limiting rules.
  2. Enter a descriptive name in Rule name.
  3. Under If incoming requests match, select Edit expression and enter: http.request.uri.path eq "/login" and http.request.method eq "POST"
  4. Under With the same characteristics, select IP.
  5. Enable Use custom counting expression and enter: http.request.uri.path eq "/login" and http.request.method eq "POST" and http.response.code in {401 403}
  6. Under When rate exceeds, enter 4 requests per 1 minute.
  7. Under Then take action, select Managed Challenge.
  8. Select Deploy.
  1. សូមចុច Create rule > Rate limiting rules ។
  2. ទាញយកឈ្មោះរបស់អ្នកនៅក្នុង Rule name
  3. នៅក្រោម If incoming requests match, ជ្រើស Edit expression និងចុះឈ្មោះ: http.request.uri.path eq "/login" and http.request.method eq "POST"
  4. នៅក្រោម With the same characteristics ចុច IP ។
  5. សូមអនុញ្ញាត Use custom counting expression និងចូលទៅក្នុង: http.request.uri.path eq "/login" and http.request.method eq "POST" and http.response.code in {401 403}
  6. នៅក្រោម When rate exceeds, ទាញយក 4 ទាញយកសម្រាប់ 1 minute ។
  7. នៅក្រោម Then take action, ជ្រើសរើស Managed Challenge ។
  8. សូមជ្រើស Deploy ។
  1. Đăng nhập vào Cloudflare dashboard ↗ và chọn tài khoản và tên miền của bạn.
  2. Đi đến Security \> WAF \> Rate limiting rules.
  3. Chọn Create rule
  4. Nhập tên mô tả trong Rule name.
  5. Trong If incoming requests match, chọn Edit expression và nhập: http.request.uri.path eq "/login" and http.request.method eq "POST"
  6. Trong With the same characteristics, chọn IP.
  7. Bật Use custom counting expression và nhập: http.request.uri.path eq "/login" and http.request.method eq "POST" and http.response.code in {401 403}
  8. Trong When rate exceeds, nhập yêu cầu 4 cho 1 minute.
  9. Trong Then take action, chọn Challenge quản lý.
  10. Chọn Deploy
  1. Log in to the Cloudflare dashboard ↗, and select your account and domain.
  2. Go to Security \> WAF \> Rate limiting rules.
  3. Select Create rule.
  4. Enter a descriptive name in Rule name.
  5. Under If incoming requests match, select Edit expression and enter: http.request.uri.path eq "/login" and http.request.method eq "POST"
  6. Under With the same characteristics, select IP.
  7. Enable Use custom counting expression and enter: http.request.uri.path eq "/login" and http.request.method eq "POST" and http.response.code in {401 403}
  8. Under When rate exceeds, enter 4 requests per 1 minute.
  9. Under Then take action, select Managed Challenge.
  10. Select Deploy.
  1. ចុច Cloudflare dashboard ↗ ហើយជ្រើសគណនីរបស់អ្នកនិងតំបន់បណ្ដាញរបស់អ្នក។
  2. ចុចទៅ Security \> WAF \> Rate limiting rules ។
  3. សូមជ្រើស Create rule ។
  4. ទាញយកឈ្មោះរបស់អ្នកនៅក្នុង Rule name
  5. នៅក្រោម If incoming requests match, ជ្រើស Edit expression និងចុះឈ្មោះ: http.request.uri.path eq "/login" and http.request.method eq "POST"
  6. នៅក្រោម With the same characteristics ចុច IP ។
  7. សូមអនុញ្ញាត Use custom counting expression និងចូលទៅក្នុង: http.request.uri.path eq "/login" and http.request.method eq "POST" and http.response.code in {401 403}
  8. នៅក្រោម When rate exceeds, ទាញយក 4 ទាញយកសម្រាប់ 1 minute ។
  9. នៅក្រោម Then take action, ជ្រើសរើស Managed Challenge ។
  10. សូមជ្រើស Deploy ។
Long-window rule: Chặn IP tích lũy các nỗ lực đăng nhập thất bại trong một khoảng thời gian dài.
Long-window rule: Block an IP that accumulates failed login attempts over a longer period.
Long-window rule: Blocks a IP that accumulates failed login attempts over a longer period ។
  1. Trong bảng điều khiển Cloudflare, đi đến Security \> Security rules.
  1. In the Cloudflare dashboard, go to Security \> Security rules.
  1. នៅលើប្រព័ន្ធប្រតិបត្តិការ Cloudflare សូមចូលទៅ Security \> Security rules ។
  1. Chọn Create rule \> Rate limiting rules.
  2. Nhập tên mô tả trong Rule name.
  3. Trong If incoming requests match, chọn Edit expression và nhập: http.request.uri.path eq "/login" and http.request.method eq "POST"
  4. Trong With the same characteristics, chọn IP.
  5. Bật Use custom counting expression và nhập: http.request.uri.path eq "/login" and http.request.method eq "POST" and http.response.code in {401 403}
  6. Trong When rate exceeds, nhập yêu cầu 20 cho 1 hour.
  7. Trong Then take action, chọn Block với thời gian 1 day.
  8. Chọn Deploy
  1. Select Create rule \> Rate limiting rules.
  2. Enter a descriptive name in Rule name.
  3. Under If incoming requests match, select Edit expression and enter: http.request.uri.path eq "/login" and http.request.method eq "POST"
  4. Under With the same characteristics, select IP.
  5. Enable Use custom counting expression and enter: http.request.uri.path eq "/login" and http.request.method eq "POST" and http.response.code in {401 403}
  6. Under When rate exceeds, enter 20 requests per 1 hour.
  7. Under Then take action, select Block with a duration of 1 day.
  8. Select Deploy.
  1. សូមចុច Create rule > Rate limiting rules ។
  2. ទាញយកឈ្មោះរបស់អ្នកនៅក្នុង Rule name
  3. នៅក្រោម If incoming requests match, ជ្រើស Edit expression និងចុះឈ្មោះ: http.request.uri.path eq "/login" and http.request.method eq "POST"
  4. នៅក្រោម With the same characteristics ចុច IP ។
  5. សូមអនុញ្ញាត Use custom counting expression និងចូលទៅក្នុង: http.request.uri.path eq "/login" and http.request.method eq "POST" and http.response.code in {401 403}
  6. នៅក្រោម When rate exceeds, ទាញយក 20 ទាញយកសម្រាប់ 1 hour ។
  7. នៅក្រោម Then take action ចុច Block ជាមួយនឹងការរយៈពេលនៃ 1 day ។
  8. សូមជ្រើស Deploy ។
  1. Đăng nhập vào Cloudflare dashboard ↗ và chọn tài khoản và tên miền của bạn.
  2. Đi đến Security \> WAF \> Rate limiting rules.
  3. Chọn Create rule
  4. Nhập tên mô tả trong Rule name.
  5. Trong If incoming requests match, chọn Edit expression và nhập: http.request.uri.path eq "/login" and http.request.method eq "POST"
  6. Trong With the same characteristics, chọn IP.
  7. Bật Use custom counting expression và nhập: http.request.uri.path eq "/login" and http.request.method eq "POST" and http.response.code in {401 403}
  8. Trong When rate exceeds, nhập yêu cầu 20 cho 1 hour.
  9. Trong Then take action, chọn Block với thời gian 1 day.
  10. Chọn Deploy
  1. Log in to the Cloudflare dashboard ↗, and select your account and domain.
  2. Go to Security \> WAF \> Rate limiting rules.
  3. Select Create rule.
  4. Enter a descriptive name in Rule name.
  5. Under If incoming requests match, select Edit expression and enter: http.request.uri.path eq "/login" and http.request.method eq "POST"
  6. Under With the same characteristics, select IP.
  7. Enable Use custom counting expression and enter: http.request.uri.path eq "/login" and http.request.method eq "POST" and http.response.code in {401 403}
  8. Under When rate exceeds, enter 20 requests per 1 hour.
  9. Under Then take action, select Block with a duration of 1 day.
  10. Select Deploy.
  1. ចុច Cloudflare dashboard ↗ ហើយជ្រើសគណនីរបស់អ្នកនិងតំបន់បណ្ដាញរបស់អ្នក។
  2. ចុចទៅ Security \> WAF \> Rate limiting rules ។
  3. សូមជ្រើស Create rule ។
  4. ទាញយកឈ្មោះរបស់អ្នកនៅក្នុង Rule name
  5. នៅក្រោម If incoming requests match, ជ្រើស Edit expression និងចុះឈ្មោះ: http.request.uri.path eq "/login" and http.request.method eq "POST"
  6. នៅក្រោម With the same characteristics ចុច IP ។
  7. សូមអនុញ្ញាត Use custom counting expression និងចូលទៅក្នុង: http.request.uri.path eq "/login" and http.request.method eq "POST" and http.response.code in {401 403}
  8. នៅក្រោម When rate exceeds, ទាញយក 20 ទាញយកសម្រាប់ 1 hour ។
  9. នៅក្រោម Then take action ចុច Block ជាមួយនឹងការរយៈពេលនៃ 1 day ។
  10. សូមជ្រើស Deploy ។
Mô hình này sử dụng biểu thức đếm chỉ đếm POST yêu cầu trả về mã lỗi xác thực. Người dùng hợp pháp đăng nhập thành công trong lần thử đầu tiên không bao giờ kích hoạt quy tắc. Xem lại kết quả trong Security Events để xác nhận ngưỡng không bắt được người dùng hợp pháp.
This pattern uses a counting expression that only counts POST requests returning authentication failure codes. Legitimate users who log in successfully on the first attempt never trigger the rule. Review the results in Security Events to confirm the thresholds are not catching legitimate users.
គំរូនេះប្រើសម្រាប់ការប្រើសម្រាប់ការប្រើសម្រាប់ការប្រើសម្រាប់ការប្រើសម្រាប់ការប្រើសម្រាប់ POST ។ អ្នកប្រើប្រាស់ដែលមានសុវត្ថិភាពដែលបានចុះឈ្មោះដោយជោគជ័យនៅលើការធ្វើតេស្តដំបូងនឹងមិនងាយស្រួលក្នុងការធ្វើតេស្តនេះ។ ការពិនិត្យឡើងវិញផលិតផលនៅក្នុង Security Events ដើម្បីបញ្ជាក់ថាតើតម្រូវការមិនត្រូវបានទទួលបានដោយអ្នកប្រើដែលមានសុវត្ថិភាព។
Đối với ví dụ đầy đủ cấp bằng chứng đầy đủ với ba quy tắc, hãy tham khảo Rate limiting best practices.
For the full tiered credential stuffing example with three rules, refer to Rate limiting best practices.
ប្រសិនបើអ្នកកំពុងរកឃើញឧទាហរណ៍ការបំពេញវិញ្ញាបនប័ត្រពេញលេញដែលមានបណ្តុះបណ្តាលបណ្តុះបណ្តាលបណ្តុះបណ្តាលបណ្តុះបណ្តាលបណ្តុះបណ្តាលបណ្តុះបណ្តាលបណ្តុះបណ្តាលបណ្តុះបណ្តាលបណ្តុះបណ្តាលបណ្តុះបណ្តាល Rate limiting best practices ។

Liên kết liên quan (docs Cloudflare) Related links (Cloudflare docs) តំណពាក់ព័ន្ធ (docs Cloudflare)

Mẫu bot mục tiêu với các quy tắc tùy chỉnh và rate limiting Target bot patterns with custom rules and rate limiting គំរូ Bot Target ជាមួយនឹងច្បាប់ផ្ទាល់ខ្លួននិង rate limiting

Phần «Target bot patterns với custom rules và rate limiting» — đọc hướng dẫn bên dưới, dùng liên kết docs gốc để xem ảnh minh họa và tab cấu hình đầy đủ.

Read the "Target bot patterns with custom rules and rate limiting" section below — open the official docs link for full screenshots and configuration tabs.

អានផ្នែក «គំរូ Bot Target ជាមួយនឹងច្បាប់ផ្ទាល់ខ្លួននិង rate limiting» ខាងក្រោម — បើកតំណ docs ផ្លូវការសម្រាប់រូបភាព និង tab កំណត់។

Mở section docs gốc ↗ Open source section ↗ បើកផ្នែក docs ផ្លូវការ ↗
Ứng dụng bảo mật custom rules và rate limiting rules cho phép bạn nhắm mục tiêu các mô hình lưu lượng truy cập cụ thể mà bảo vệ bot tích hợp không bắt được. Cloudflare tách phát hiện (điểm số lưu lượng truy cập) từ giảm thiểu (hành động trên những điểm số đó). Bạn viết các quy tắc tham chiếu tín hiệu phát hiện để quyết định những gì action để thực hiện.
Application Security custom rules and rate limiting rules let you target specific traffic patterns that built-in bot protection does not catch. Cloudflare separates detection (scoring traffic) from mitigation (acting on those scores). You write rules that reference detection signals to decide what action to take.
សកម្មភាពសុវត្ថិភាព custom rules និង rate limiting rules អនុញ្ញាតឱ្យអ្នកផ្តោតលើគំរូដំណើរការពិសេសដែលការពារ bot ដែលមានស្ថិតនៅក្នុងការមិនទទួលបាន។ Cloudflare បានបាត់បន្ថយការរកឃើញ (ការកំណត់ការដឹកជញ្ជូន) ពីការកាត់បន្ថយ (ការអនុវត្តលើការកំណត់នេះ) ។ អ្នកសរសេរច្បាប់ដែលផ្ដល់ប្រសិនបើបញ្ហានិងបញ្ហានដើម្បីកំណត់អ្វី action ដើម្បីទទួលបាន។

Liên kết liên quan (docs Cloudflare) Related links (Cloudflare docs) តំណពាក់ព័ន្ធ (docs Cloudflare)

Chặn yêu cầu với tiêu đề bị mất hoặc đáng ngờ Block requests with missing or suspicious headers ការបកប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែ

Phần «Block requests với missing or suspicious headers» — đọc hướng dẫn bên dưới, dùng liên kết docs gốc để xem ảnh minh họa và tab cấu hình đầy đủ.

Read the "Block requests with missing or suspicious headers" section below — open the official docs link for full screenshots and configuration tabs.

អានផ្នែក «ការបកប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែ» ខាងក្រោម — បើកតំណ docs ផ្លូវការសម្រាប់រូបភាព និង tab កំណត់។

Mở section docs gốc ↗ Open source section ↗ បើកផ្នែក docs ផ្លូវការ ↗
Các trình duyệt hợp pháp thường gửi tiêu đề như User-Agent, Accept và Accept-Language. Nhiều bot bỏ qua các tiêu đề này hoặc gửi các giá trị không phải là trình duyệt. Một quy tắc tùy chỉnh nhắm mục tiêu các yêu cầu với tiêu đề trống rỗng hoặc đáng ngờ bắt được các bot trốn tránh phát hiện dựa trên điểm số.
Legitimate browsers typically send headers like User-Agent, Accept, and Accept-Language. Many bots omit these headers or send non-browser values. A custom rule targeting requests with empty or suspicious headers catches bots that evade score-based detection.
ទាញយកទាញយកទាញយកជាទូទៅ User-Agent, Accept និង Accept-Language ។ ម៉ាស៊ីនប្លុកជាច្រើនបានបាត់បន្ថយកំណត់ទាំងនេះឬផ្ញើតម្លៃដែលមិនមែនជាអ្នកប្លុក។ គោលបំណងផ្ទាល់ខ្លួនដែលមានតម្រូវការដែលមានកំណត់សម្គាល់ឬគួរឱ្យចាប់អារម្មណ៍នឹងកាត់បន្ថយបំពាក់ដែលបាត់បន្ថយការរកឃើញដោយផ្អែកលើលក្ខណៈពិសេស។
Trước khi tạo các quy tắc tùy chỉnh, hãy kiểm tra các cài đặt bot tích hợp trong Security \> Settings (lọc bằng Bot traffic). Những cài đặt này xử lý các kịch bản phổ biến như chặn các trình quét AI, thách thức lưu lượng truy cập tự động và cho phép các bot được xác minh mà không yêu cầu bạn viết các biểu thức. Để biết danh sách đầy đủ các cài đặt tích hợp, hãy tham khảo Challenge bad bots.
Before creating custom rules, review the built-in bot settings in Security \> Settings (filter by Bot traffic). These settings handle common scenarios like blocking AI crawlers, challenging automated traffic, and allowing verified bots without requiring you to write expressions. For the full list of built-in settings, refer to Challenge bad bots.
មុនពេលបង្កើតគោលដៅផ្ទាល់ខ្លួន, សូមពិនិត្យមើលការកំណត់ bot ដែលមាននៅក្នុង Security \> Settings (បម្រើដោយ Bot traffic) ។ ការផ្លាស់ប្តូរនេះធ្វើឱ្យប្រសើរឡើងនូវប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនប សម្រាប់បញ្ជីពេញលេញនៃការកំណត់ដំណោះស្រាយបង្ហាញ Challenge bad bots ។
Kế hoạch Availability
Plan availability
គម្រោងអាចរកបាន
Các cài đặt bot tích hợp sẵn là một phần của Super Bot Fight Mode (Pro và trên). Trên các gói miễn phí, chỉ có chuyển đổi Bot Fight Mode có sẵn. Custom rules có sẵn trên tất cả các kế hoạch, với số lượng quy tắc tăng lên trên các kế hoạch cao hơn.
Built-in bot settings are part of Super Bot Fight Mode (Pro and above). On Free plans, only the Bot Fight Mode toggle is available. Custom rules are available on all plans, with the number of rules increasing on higher plans.
ការផ្លាស់ប្តូរ bot នេះគឺជាផ្នែកមួយនៃ Super Bot Fight Mode (Pro និងខ្ពស់ជាងនេះ) ។ នៅលើគម្រោងដោយឥតគិតថ្លៃតែការផ្លាស់ប្តូរ Bot Fight Mode ដែលអាចរកបាន។ Custom rules គឺអាចរកបាននៅលើទម្រង់ទាំងអស់ជាមួយនឹងការកើនឡើងចំនួននៃច្បាប់នៅទម្រង់ខ្ពស់ជាងនេះ។
Nếu cài đặt tích hợp không đáp ứng nhu cầu của bạn, hãy tạo các quy tắc tùy chỉnh. Bắt đầu bằng cách tạo một ngoại lệ cho các bot đã được xác minh để chúng được bảo vệ trước khi bạn triển khai bất kỳ quy tắc chặn nào.
If the built-in settings do not cover your needs, create custom rules. Start by creating an exception for verified bots so they are protected before you deploy any blocking rules.
ប្រសិនបើការដំឡើងដែលមានមូលដ្ឋានមិនត្រឹមត្រូវដល់តម្រូវការរបស់អ្នក, បានបង្កើតច្បាប់ផ្ទាល់ខ្លួន។ សូមចាប់ផ្តើមដោយបង្កើតការប៉ះពាល់សម្រាប់ bots ដែលបានត្រួតពិនិត្យដូច្នេះពួកគេអាចត្រូវបានការពារមុនពេលដែលអ្នកដំឡើងច្បាប់បង្វិលណាមួយ។
Chuyển sang quy tắc tùy chỉnh, sau đó tạo cả hai quy tắc:
Navigate to custom rules, then create both rules:
ទាញយកប្រព័ន្ធប្រតិបត្តិការទាញយកប្រព័ន្ធប្រតិបត្តិការទាញយកប្រព័ន្ធប្រតិបត្តិការទាញយកប្រព័ន្ធប្រតិបត្តិការទាញយកប្រព័ន្ធប្រតិបត្តិការទាញយកប្រព័ន្ធប្រតិបត្តិការទាញយកប្រព័ន្ធប្រតិបត្តិការទាញយកប្រព័ន្ធប្រតិបត្តិការ
  1. Trong bảng điều khiển Cloudflare, đi đến Security \> Security rules.
  1. In the Cloudflare dashboard, go to Security \> Security rules.
  1. នៅលើប្រព័ន្ធប្រតិបត្តិការ Cloudflare សូមចូលទៅ Security \> Security rules ។
  1. Chọn Create rule \> Custom rules.
  1. Select Create rule \> Custom rules.
  1. សូមចុច Create rule > Custom rules ។
  1. Đăng nhập vào Cloudflare dashboard ↗ và chọn tài khoản và tên miền của bạn.
  2. Đi đến Security \> WAF \> Custom rules.
  3. Chọn Create rule
  1. Log in to the Cloudflare dashboard ↗, and select your account and domain.
  2. Go to Security \> WAF \> Custom rules.
  3. Select Create rule.
  1. ចុច Cloudflare dashboard ↗ ហើយជ្រើសគណនីរបស់អ្នកនិងតំបន់បណ្ដាញរបស់អ្នក។
  2. ចុចទៅ Security \> WAF \> Custom rules ។
  3. សូមជ្រើស Create rule ។
First, create a verified bot exception:
First, create a verified bot exception:
First, create a verified bot exception:
  1. Nhập tên mô tả trong Rule name.
  2. Trong When incoming requests match, chọn Edit expression và nhập: (cf.client.bot)
  3. Trong Then take action, chọn Skip từ thả xuống Choose action. Sau đó chọn All remaining custom rules.
  4. Trong Place at, chọn First từ thả xuống Select order để quy tắc này được thực hiện trước khi bất kỳ quy tắc chặn nào.
  5. Chọn Deploy
  1. Enter a descriptive name in Rule name.
  2. Under When incoming requests match, select Edit expression and enter: (cf.client.bot)
  3. Under Then take action, select Skip from the Choose action dropdown. Then select All remaining custom rules.
  4. Under Place at, select First from the Select order dropdown so this rule executes before any blocking rules.
  5. Select Deploy.
  1. ទាញយកឈ្មោះរបស់អ្នកនៅក្នុង Rule name
  2. នៅក្រោម When incoming requests match, ជ្រើស Edit expression និងចុះឈ្មោះ: (cf.client.bot)
  3. នៅក្រោម Then take action សូមជ្រើស Skip ពីទាញយក Choose action ។ បន្ទាប់មកចុច All remaining custom rules ។
  4. នៅក្រោម Place at, ជ្រើស First ពីការបង្វិល Select order ដូច្នេះกฎនេះត្រូវបានអនុវត្តមុនពេលគ្រប់គ្រងបង្វិលណាមួយ។
  5. សូមជ្រើស Deploy ។
Điều này đảm bảo rằng các bot đã được xác minh (crawler công cụ tìm kiếm, dịch vụ giám sát) bỏ qua các quy tắc tùy chỉnh của bạn. Nếu bạn có API nội bộ, tích hợp đối tác hoặc công cụ giám sát gửi lưu lượng truy cập tự động, hãy tạo quy tắc Skip bổ sung cho địa chỉ IP hoặc đại lý người dùng của họ trước khi triển khai quy tắc chặn. Xem lại lưu lượng truy cập tự động dự kiến của bạn trong Security Events để xác định những gì để cho phéplist.
This ensures verified bots (search engine crawlers, monitoring services) bypass your custom rules. If you have internal APIs, partner integrations, or monitoring tools that send automated traffic, create additional Skip rules for their IP addresses or user agents before deploying blocking rules. Review your expected automated traffic in Security Events to identify what to allowlist.
នេះធ្វើឱ្យប្រសិនបើ bots ដែលបានត្រួតពិនិត្យ ( crawlers ឧបករណ៍ស្វែងរក, សេវាកម្មការត្រួតពិនិត្យ) អាចបាត់បន្ថយច្បាប់ផ្ទាល់ខ្លួនរបស់អ្នក។ ប្រសិនបើអ្នកមានឧបករណ៍ដំណើរការប្រព័ន្ធប្រតិបត្តិការអ៊ីនធឺណិត (APIs) និងឧបករណ៍ដំណើរការប្រព័ន្ធប្រតិបត្តិការអ៊ីនធឺណិត (partner integrations) ដែលផ្ញើការដឹកជញ្ជូនដោយស្វ័យប្រវត្តិ, សូមបង្កើតច្បាប់ Skip បន្ថែមសម្រាប់អ៊ីនធឺណិត IP ឬអ៊ីនធឺណិតអ្នកប្រើរបស់ពួកគេមុនពេលដំណើរការគ្រប់គ្រងការបង្វិល។ ការពិនិត្យឡើងវិញការដឹកជញ្ជូនដោយស្វ័យប្រវត្តិរបស់អ្នកនៅ Security Events ដើម្បីរកឃើញអ្វីដើម្បីអនុញ្ញាត list ។
Then, create a blocking rule:
Then, create a blocking rule:
Then, create a blocking rule:
  1. Chọn Create rule
  2. Nhập tên mô tả trong Rule name.
  3. Trong When incoming requests match, chọn Edit expression và nhập: (http.request.uri.path eq "/login" and http.request.method eq "POST")
  4. Bên dưới Then take action, chọn Managed Challenge từ thả xuống Choose action.
  5. Dưới Place at, hãy để dropdown Select order được đặt thành Last. Điều này đặt quy tắc sau khi ngoại lệ bot đã được xác minh.
  6. Chọn Deploy
  7. Xem lại kết quả trong Security Events. Nếu quy tắc chỉ phù hợp với lưu lượng bot, hãy chỉnh sửa quy tắc và thay đổi action từ Managed Challenge sang Block.
  1. Select Create rule.
  2. Enter a descriptive name in Rule name.
  3. Under When incoming requests match, select Edit expression and enter: (http.request.uri.path eq "/login" and http.request.method eq "POST")
  4. Under Then take action, select Managed Challenge from the Choose action dropdown.
  5. Under Place at, leave the Select order dropdown set to Last. This places the rule after the verified bot exception.
  6. Select Deploy.
  7. Review the results in Security Events. If the rule matches only bot traffic, edit the rule and change the action from Managed Challenge to Block.
  1. សូមជ្រើស Create rule ។
  2. ទាញយកឈ្មោះរបស់អ្នកនៅក្នុង Rule name
  3. នៅក្រោម When incoming requests match, ជ្រើស Edit expression និងចុះឈ្មោះ: (http.request.uri.path eq "/login" and http.request.method eq "POST")
  4. នៅក្រោម Then take action, ជ្រើស Managed Challenge ពីការបង្វិល Choose action ។
  5. នៅក្រោម Place at, ទាញយកទាញយក Select order ទៅ Last ។ នេះធ្វើឱ្យប្រសិនបើការត្រឹមត្រូវបន្ទាប់ពីការត្រឹមត្រូវ bot ដែលបានត្រឹមត្រូវ។
  6. សូមជ្រើស Deploy ។
  7. សូមពិនិត្យមើលផលិតផលនៅក្នុង Security Events ។ ប្រសិនបើគោលដៅនេះបានបំពេញតាមការធ្វើតេស្ត bot មួយតែប៉ុណ្ណោះ, សូមធ្វើតេស្តគោលដៅនេះនិងផ្លាស់ប្តូរ action ពី Managed Challenge ទៅ Block ។
Để biết thêm tùy chọn quy tắc tùy chỉnh bao gồm trình tạo trường hình ảnh, hãy tham khảo Create a custom rule in the dashboard.
For additional custom rule options including the visual field builder, refer to Create a custom rule in the dashboard.
ប្រសិនបើអ្នកមានលក្ខណៈសម្បត្តិបន្ថែមទៀតដូចជាអ្នកបង្កើតទំហំអ៊ីនធឺណិត, សូមមើល Create a custom rule in the dashboard ។
Nếu lưu lượng bot của bạn tập trung từ các quốc gia mà bạn không có người dùng thực sự, bạn có thể kết hợp các bộ lọc địa lý với các quy tắc trên. Thêm ip.src.country vào biểu thức của bạn để giới hạn quy tắc cho các khu vực cụ thể. Ví dụ, hãy xem Block traffic by geographical location
If your bot traffic is concentrated from countries where you have no real users, you can combine geographic filters with the rules above. Add ip.src.country to your expression to restrict the rule to specific regions. For examples, refer to Block traffic by geographical location.
ប្រសិនបើការដឹកជញ្ជូន bot របស់អ្នកគឺមានមូលដ្ឋានពីប្រទេសដែលអ្នកមិនមានអ្នកប្រើប្រាស់ពិតប្រាកដអ្នកអាចរួមបញ្ចូលឯកសារឧស្សាហកម្មជាមួយនឹងច្បាប់ខាងលើ។ បន្ថែម ip.src.country ទៅលើការបង្ហាញរបស់អ្នកដើម្បីកាត់បន្ថយធម្មតានៅក្នុងតំបន់ពិសេស។ សម្រាប់ឧទាហរណ៍, សូមមើល Block traffic by geographical location ។

Liên kết liên quan (docs Cloudflare) Related links (Cloudflare docs) តំណពាក់ព័ន្ធ (docs Cloudflare)

Bảo vệ các con đường tần số cao với rate limiting Protect high-frequency paths with rate limiting ការពារផ្លូវកម្រិតខ្ពស់ជាមួយ rate limiting

Phần «Bảo vệ high-frequency paths với rate limiting» — đọc hướng dẫn bên dưới, dùng liên kết docs gốc để xem ảnh minh họa và tab cấu hình đầy đủ.

Read the "Protect high-frequency paths with rate limiting" section below — open the official docs link for full screenshots and configuration tabs.

អានផ្នែក «ការពារផ្លូវកម្រិតខ្ពស់ជាមួយ rate limiting» ខាងក្រោម — បើកតំណ docs ផ្លូវការសម្រាប់រូបភាព និង tab កំណត់។

Mở section docs gốc ↗ Open source section ↗ បើកផ្នែក docs ផ្លូវការ ↗
Ngoài các điểm cuối form, bot cũng nhắm mục tiêu các luồng thanh toán, các điểm cuối API và các con đường có giá trị cao khác. Rate limiting quy tắc giới hạn số lượng yêu cầu một khách hàng duy nhất có thể thực hiện cho các con đường này trong một cửa sổ thời gian.
Beyond form endpoints, bots also target checkout flows, API endpoints, and other high-value paths. Rate limiting rules cap the number of requests a single client can make to these paths within a time window.
លើសពីទីតាំងបញ្ចប់ form អ្នកបំពង់បំពង់បំពង់បំពង់បំពង់បំពង់បញ្ចប់ API និងបំពង់បំពង់ផ្សេងទៀតដែលមានតម្លៃខ្ពស់។ Rate limiting ដំណោះស្រាយបញ្ចប់ចំនួននៃសំណួរមួយអតិថិជនមួយអាចធ្វើទៅតាមផ្លូវទាំងនេះក្នុងរយៈពេលមួយ។
Ví dụ sau đây tạo quy tắc rate limiting cho điểm cuối thanh toán. Điều chỉnh đường dẫn, tỷ lệ và action cho trang web của bạn.
The following example creates a rate limiting rule for a checkout endpoint. Adjust the path, rate, and action for your site.
លក្ខណៈសម្បត្តិ rate limiting ត្រូវបានបង្កើតឡើងសម្រាប់ចំណុចបញ្ចប់ការទូទាត់។ ការកំណត់ដំណើរការ, ការកំណត់ដំណើរការនិង action សម្រាប់គេហទំព័ររបស់អ្នក។
Rate limiting tùy chọn thay đổi theo kế hoạch
Rate limiting options vary by plan
Rate limiting ការផ្លាស់ប្តូរតាមរយៈដំណោះស្រាយ
Thời gian, hành động và tùy chọn đếm có sẵn thay đổi theo kế hoạch. Ví dụ dưới đây sử dụng một khoảng thời gian 1 phút với Managed Challenge. Tham khảo Rate limiting rules availability cho các tùy chọn của kế hoạch của bạn.
Available periods, actions, and counting options vary by plan. The example below uses a 1-minute period with Managed Challenge. Refer to Rate limiting rules availability for your plan's options.
ពេលវេលាដែលអាចប្រើបាន, ការប្រតិបត្តិការ, និងតម្រូវការកំណត់ផ្គង់ផ្លាស់ប្តូរតាមរយៈគម្រោង។ គំរូខាងក្រោមនេះប្រើពេលវេលា 1 នាទីជាមួយនឹងការធ្វើតេស្តគ្រប់គ្រង។ សូមពិនិត្យមើល Rate limiting rules availability សម្រាប់ជម្រើសនៃគម្រោងរបស់អ្នក។
  1. Trong bảng điều khiển Cloudflare, đi đến Security \> Security rules.
  1. In the Cloudflare dashboard, go to Security \> Security rules.
  1. នៅលើប្រព័ន្ធប្រតិបត្តិការ Cloudflare សូមចូលទៅ Security \> Security rules ។
  1. Chọn Create rule \> Rate limiting rules.
  2. Nhập tên mô tả trong Rule name.
  3. Trong If incoming requests match, chọn Edit expression và nhập: http.request.uri.path eq "/api/checkout" and http.request.method eq "POST"
  4. Trong With the same characteristics, chọn IP.
  5. Trong When rate exceeds, nhập yêu cầu 10 cho 1 minute.
  6. Trong Then take action, chọn Challenge quản lý.
  7. Chọn Deploy
  8. Xem lại kết quả trong Security Events. Nếu quy tắc chỉ phù hợp với lưu lượng bot, hãy chỉnh sửa quy tắc và thay đổi action thành Block nếu cần thiết.
  1. Select Create rule \> Rate limiting rules.
  2. Enter a descriptive name in Rule name.
  3. Under If incoming requests match, select Edit expression and enter: http.request.uri.path eq "/api/checkout" and http.request.method eq "POST"
  4. Under With the same characteristics, select IP.
  5. Under When rate exceeds, enter 10 requests per 1 minute.
  6. Under Then take action, select Managed Challenge.
  7. Select Deploy.
  8. Review the results in Security Events. If the rule matches only bot traffic, edit the rule and change the action to Block if needed.
  1. សូមចុច Create rule > Rate limiting rules ។
  2. ទាញយកឈ្មោះរបស់អ្នកនៅក្នុង Rule name
  3. នៅក្រោម If incoming requests match, ជ្រើស Edit expression និងចុះឈ្មោះ: http.request.uri.path eq "/api/checkout" and http.request.method eq "POST"
  4. នៅក្រោម With the same characteristics ចុច IP ។
  5. នៅក្រោម When rate exceeds, ទាញយក 10 ទាញយកសម្រាប់ 1 minute ។
  6. នៅក្រោម Then take action, ជ្រើសរើស Managed Challenge ។
  7. សូមជ្រើស Deploy ។
  8. សូមពិនិត្យមើលផលិតផលនៅក្នុង Security Events ។ ប្រសិនបើគោលដៅនេះបានបំពេញតាមការធ្វើតេស្ត bot មួយតែប៉ុណ្ណោះអ្នកអាចធ្វើតេស្តគោលដៅនេះនិងផ្លាស់ប្តូរ action ទៅ Block ប្រសិនបើត្រូវ។
  1. Đăng nhập vào Cloudflare dashboard ↗ và chọn tài khoản và tên miền của bạn.
  2. Đi đến Security \> WAF \> Rate limiting rules.
  3. Chọn Create rule
  4. Nhập tên mô tả trong Rule name.
  5. Trong If incoming requests match, chọn Edit expression và nhập: http.request.uri.path eq "/api/checkout" and http.request.method eq "POST"
  6. Trong With the same characteristics, chọn IP.
  7. Trong When rate exceeds, nhập yêu cầu 10 cho 1 minute.
  8. Trong Then take action, chọn Challenge quản lý.
  9. Chọn Deploy
  10. Xem lại kết quả trong Security Events. Nếu quy tắc chỉ phù hợp với lưu lượng bot, hãy chỉnh sửa quy tắc và thay đổi action thành Block nếu cần thiết.
  1. Log in to the Cloudflare dashboard ↗, and select your account and domain.
  2. Go to Security \> WAF \> Rate limiting rules.
  3. Select Create rule.
  4. Enter a descriptive name in Rule name.
  5. Under If incoming requests match, select Edit expression and enter: http.request.uri.path eq "/api/checkout" and http.request.method eq "POST"
  6. Under With the same characteristics, select IP.
  7. Under When rate exceeds, enter 10 requests per 1 minute.
  8. Under Then take action, select Managed Challenge.
  9. Select Deploy.
  10. Review the results in Security Events. If the rule matches only bot traffic, edit the rule and change the action to Block if needed.
  1. ចុច Cloudflare dashboard ↗ ហើយជ្រើសគណនីរបស់អ្នកនិងតំបន់បណ្ដាញរបស់អ្នក។
  2. ចុចទៅ Security \> WAF \> Rate limiting rules ។
  3. សូមជ្រើស Create rule ។
  4. ទាញយកឈ្មោះរបស់អ្នកនៅក្នុង Rule name
  5. នៅក្រោម If incoming requests match, ជ្រើស Edit expression និងចុះឈ្មោះ: http.request.uri.path eq "/api/checkout" and http.request.method eq "POST"
  6. នៅក្រោម With the same characteristics ចុច IP ។
  7. នៅក្រោម When rate exceeds, ទាញយក 10 ទាញយកសម្រាប់ 1 minute ។
  8. នៅក្រោម Then take action, ជ្រើសរើស Managed Challenge ។
  9. សូមជ្រើស Deploy ។
  10. សូមពិនិត្យមើលផលិតផលនៅក្នុង Security Events ។ ប្រសិនបើគោលដៅនេះបានបំពេញតាមការធ្វើតេស្ត bot មួយតែប៉ុណ្ណោះអ្នកអាចធ្វើតេស្តគោលដៅនេះនិងផ្លាស់ប្តូរ action ទៅ Block ប្រសិនបើត្រូវ។
Đối với các mẫu và ngưỡng bổ sung, hãy tham khảo Rate limiting best practices.
For additional patterns and thresholds, refer to Rate limiting best practices.
សម្រាប់គំរូនិងតម្រូវការបន្ថែមសូមមើល Rate limiting best practices ។
Phân tích tỷ lệ phân tích bảo mật đòi hỏi một kế hoạch doanh nghiệp
Security Analytics rate analysis requires an Enterprise plan
ការដោះស្រាយតម្លៃ Security Analytics មានតម្រូវការសម្រាប់គម្រោង Enterprise
Khách hàng doanh nghiệp có thể sử dụng tab Request rate analysis trong Security Analytics để hình dung phân phối tỷ lệ yêu cầu và Log action để quan sát phù hợp với quy tắc mà không cần sử dụng action. Trên các kế hoạch khác, ước tính ngưỡng dựa trên mô hình giao thông dự kiến của bạn. Hãy tham khảo Find an appropriate rate limit để biết phương pháp đầy đủ.
Enterprise customers can use the Request rate analysis tab in Security Analytics to visualize request rate distributions and the Log action to observe rule matches without taking action. On other plans, estimate thresholds based on your expected traffic patterns. Refer to Find an appropriate rate limit for the full methodology.
អ្នកអតិថិជនអាជីវកម្មអាចប្រើទម្រង់ Request rate analysis នៅក្នុង Security Analytics ដើម្បីបង្ហាញការផ្លាស់ប្តូរទំហំទម្រង់និង Log action ដើម្បីពិនិត្យមើលទំហំទំហំទម្រង់ដោយមិនប្រើ action ។ នៅលើដំណោះស្រាយផ្សេងទៀត, ពិនិត្យឡើងវិញទំហំទូលំទូលំទូលំទូលំទូលំទូលំទូលំទូលំទូលំទូលំទូលំទូលំទូលំទូលំទូលំទូលំទូលំទូលំទូលំទូលំទូលំទូលាយរបស់អ្នក។ សូមមើល Find an appropriate rate limit សម្រាប់វិធីសាស្រ្តពេញលេញ។
Enterprise Bot Management: Điểm bot trong các quy tắc tùy chỉnh
Enterprise Bot Management: bot score in custom rules
Enterprise Bot Management: លក្ខណៈពិសេសនៃ bot
Khách hàng doanh nghiệp với Bot Management có thể tham chiếu trường cf.bot_management.score trong các biểu thức quy tắc tùy chỉnh để kiểm soát chi tiết lưu lượng bot. Bot Management gán điểm từ 1 đến 99 cho mỗi yêu cầu, trong đó điểm thấp hơn cho thấy hành vi tự động hơn. Xem Bot scores và Bot Management variables để biết chi tiết.
Enterprise customers with Bot Management can reference the cf.bot_management.score field in custom rule expressions for granular control over bot traffic. Bot Management assigns a score from 1 to 99 to each request, where lower scores indicate more automated behavior. Refer to Bot scores and Bot Management variables for details.
អ្នកអតិថិជនអាជីវកម្មដែលមាន Bot Management អាចផ្លាស់ប្តូរឧបករណ៍ cf.bot_management.score ក្នុងការបង្វិលស្ដង់ដារផ្ទាល់ខ្លួនសម្រាប់ការគ្រប់គ្រងពិសេសលើការដឹកជញ្ជូន bot ។ Bot Management អនុញ្ញាតឱ្យមានកម្រិតពី 1 ទៅ 99 សម្រាប់សំណួរទាំងអស់ដែលមានកម្រិតខ្ពស់ជាងនេះបង្ហាញពីការធ្វើការដោយស្វ័យប្រវត្តិជាងមុន។ សូមមើល Bot scores និង Bot Management variables សម្រាប់ព័ត៌មានបន្ថែម។

Kiểm tra và điều chỉnh các quy tắc của bạn Verify and tune your rules ពិនិត្យឡើងវិញនិងស្ដង់ដាររបស់អ្នក

Phần «Xác minh và tune your rules» — đọc hướng dẫn bên dưới, dùng liên kết docs gốc để xem ảnh minh họa và tab cấu hình đầy đủ.

Read the "Verify and tune your rules" section below — open the official docs link for full screenshots and configuration tabs.

អានផ្នែក «ពិនិត្យឡើងវិញនិងស្ដង់ដាររបស់អ្នក» ខាងក្រោម — បើកតំណ docs ផ្លូវការសម្រាប់រូបភាព និង tab កំណត់។

Mở section docs gốc ↗ Open source section ↗ បើកផ្នែក docs ផ្លូវការ ↗
Sau khi bạn triển khai các quy tắc bảo vệ bot, hãy sử dụng Security Events để xác minh rằng chúng đang hoạt động như dự định và điều chỉnh ngưỡng dựa trên kết quả.
After you deploy bot protection rules, use Security Events to verify they are working as intended and adjust thresholds based on the results.
បន្ទាប់ពីអ្នកដំឡើងច្បាប់ការពារ bot, ប្រើ Security Events ដើម្បីត្រួតពិនិត្យថាតើពួកគេធ្វើការដូចគ្នានេះហើយដំឡើងទំហំទូលំទូលំទូលំទូលំទូលំទូលំទូលំទូលំទូលំទូលំទូលំទូលំទូលំទូលំទូលំទូលំទូលំទូលំទូលំទូលំទូលំទូលំទូលំទូលំទូលំទូលំទូលំទូលំទូលំទូលំទូលំទូល។

Liên kết liên quan (docs Cloudflare) Related links (Cloudflare docs) តំណពាក់ព័ន្ធ (docs Cloudflare)

Kiểm tra sự kiện an ninh Check Security Events ពិនិត្យឡើងវិញការសុវត្ថិភាព

Phần «Check Security Events» — đọc hướng dẫn bên dưới, dùng liên kết docs gốc để xem ảnh minh họa và tab cấu hình đầy đủ.

Read the "Check Security Events" section below — open the official docs link for full screenshots and configuration tabs.

អានផ្នែក «ពិនិត្យឡើងវិញការសុវត្ថិភាព» ខាងក្រោម — បើកតំណ docs ផ្លូវការសម្រាប់រូបភាព និង tab កំណត់។

Mở section docs gốc ↗ Open source section ↗ បើកផ្នែក docs ផ្លូវការ ↗
Sự kiện bảo mật hiển thị các yêu cầu mà các sản phẩm bảo mật Cloudflare đã hành động hoặc đánh dấu, bao gồm các khối, thách thức và cờ.
Security Events displays requests that Cloudflare security products acted on or flagged, including blocks, challenges, and flags.
ការប្រៀបធៀបការប្រៀបធៀបការប្រៀបធៀប ការប្រៀបធៀប ការប្រៀបធៀប ការប្រៀបធៀប ការប្រៀបធៀប ការប្រៀបធៀប ការប្រៀបធៀប ការប្រៀបធៀប ការប្រៀបធៀប ការប្រៀបធៀប ការប្រៀបធៀប ការប្រៀបធៀប ការប្រៀបធៀប ការប្រៀបធៀប ការប្រៀបធៀប ការប្រៀបធៀប ការប្រៀបធៀប ការប្រៀបធៀប ការប្រៀបធៀប ការប្រៀបធៀប ការប្រៀបធៀប ការប្រៀបធៀប ការប្រៀបធៀប ការប្រៀបធៀប ការប្រៀបធៀប ការប្រៀបធៀប ការប្រៀបធៀប ការប្រៀបធៀប ការប្រៀបធៀប ការប្រៀបធៀប ការប្រៀបធៀប
  1. Trong bảng điều khiển Cloudflare, đi đến trang Analytics.
  1. In the Cloudflare dashboard, go to the Analytics page.
  1. ក្នុងប្រព័ន្ធប្រតិបត្តិការ Cloudflare សូមចូលទៅក្នុងទំព័រ Analytics ។
  1. Chọn tab Events
  1. Select the Events tab.
  1. សូមចុច Events ។
  1. Trong bảng điều khiển Cloudflare, đi đến Security \> Events.
  1. In the Cloudflare dashboard, go to Security \> Events.
  1. នៅលើប្រព័ន្ធប្រតិបត្តិការ Cloudflare សូមចូលទៅ Security \> Events ។
Xem lại Sampled logs để kiểm tra các yêu cầu riêng lẻ. Mỗi mục nhập nhật ký hiển thị action được lấy, quy tắc kích hoạt, nguồn IP, đại lý người dùng, đường dẫn URI và quốc gia. Các phần dashboard có sẵn khác nhau theo kế hoạch. Tham khảo Security Events availability cho các tính năng của kế hoạch của bạn.
Review the Sampled logs to inspect individual requests. Each log entry shows the action taken, the rule that triggered, the source IP, user agent, URI path, and country. Available dashboard sections vary by plan. Refer to Security Events availability for your plan's features.
សូមពិនិត្យមើល Sampled logs ដើម្បីពិនិត្យមើលសំណួរផ្ទាល់ខ្លួន។ ទិន្នន័យទាំងអស់នេះបង្ហាញនូវ action ដែលបានកាត់បន្ថយ, គោលដៅដែលបានកាត់បន្ថយ, គោលដៅ IP ដែលបានកាត់បន្ថយ, អេក្រង់អ្នកប្រើប្រាស់, ផ្លូវ URI និងប្រទេស។ ផ្នែក dashboard ដែលអាចរកបានផ្លាស់ប្តូរតាមរយៈគម្រោង។ សូមពិនិត្យមើល Security Events availability សម្រាប់លក្ខណៈពិសេសនៃគម្រោងរបស់អ្នក។
Tìm kiếm tích cực giả (liên quan đến lưu lượng truy cập hợp pháp mà các quy tắc của bạn đã thách thức hoặc chặn một cách không chính xác). Các dấu hiệu phổ biến bao gồm:
Look for false positives (legitimate traffic that your rules incorrectly challenged or blocked). Common signs include:
សូមស្វែងរកអត្ថប្រយោជន៍ស្អាត (ការដឹកជញ្ជូនស្អាតដែលគោលបំណងរបស់អ្នកមិនត្រឹមត្រូវបានបំបែកឬប្លុក) ។ សញ្ញាបនប័ត្ររួមបញ្ចូលទាំង:
  • Yêu cầu từ các dịch vụ giám sát đã biết hoặc bộ xử lý thanh toán xuất hiện trong các sự kiện bị chặn
  • Người dùng đại lý phù hợp với trình duyệt hợp pháp nhưng nhận được thách thức
  • Số lượng lớn các yêu cầu thách thức từ các quốc gia nơi bạn có người dùng thực
  • Requests from known monitoring services or payment processors appearing in blocked events
  • User agents matching legitimate browsers but receiving challenges
  • High volumes of challenged requests from countries where you have real users
  • ការស្វែងរកពីសេវាកម្មការត្រួតពិនិត្យដែលដឹងឬអ្នកដំណើរការទូទាត់ដែលបានបង្ហាញនៅក្នុងព្រឹត្តិការណ៍ដែលត្រូវបានកាត់បង់
  • អ្នកផ្គត់ផ្គង់អតិថិជនដែលសមរម្យជាមួយអ្នកបង្វិលដែលមានភាពត្រឹមត្រូវប៉ុន្តែទទួលបានជម្រើស
  • ទំហំខ្ពស់នៃតម្រូវការសាកល្បងពីប្រទេសដែលអ្នកមានអ្នកប្រើពិតប្រាកដ
Để biết các quy tắc sử dụng Managed Challenge action, hãy kiểm tra challenge solve rate (CSR). Một CSR thấp có thể cho thấy quy tắc này có hiệu quả lọc lưu lượng truy cập tự động hơn là người dùng hợp pháp.
For rules using the Managed Challenge action, check the challenge solve rate (CSR). A low CSR likely indicates the rule is effectively filtering automated traffic rather than legitimate users.
ប្រសិនបើអ្នកមានលក្ខណៈសម្បត្តិដែលប្រើជម្រើសគ្រប់គ្រង action សូមមើល challenge solve rate (CSR) ។ កម្រិត CSR ខ្ពស់អាចបង្ហាញថាច្បាប់នេះជាការត្រួតពិនិត្យដោយស្វ័យប្រវត្តិជាប្រសើរជាងអ្នកប្រើដែលមានសិទ្ធិភាព។
Bot Fight Mode và Super Bot Fight Mode được thiết kế tích cực. Kết quả dương tính giả được mong đợi, đặc biệt là trong vài ngày đầu tiên sau khi bật chúng. Sự khác biệt chính giữa hai là cách bạn xử lý các ngoại lệ:
Bot Fight Mode and Super Bot Fight Mode are aggressive by design. False positives are expected, especially in the first few days after turning them on. The key difference between the two is how you handle exceptions:
Bot Fight Mode និង Super Bot Fight Mode គឺជាការជោគជ័យដោយការរចនា។ លក្ខណៈពិសេសនៃការធ្វើតេស្តនេះគឺជាពិសេសក្នុងរយៈពេល ២ ថ្ងៃដំបូងបន្ទាប់ពីការធ្វើតេស្តនេះ។ ការផ្លាស់ប្តូរទាំងពីរគឺជារបៀបដែលអ្នកគ្រប់គ្រងការផ្លាស់ប្តូរ:
  • Bot Fight Mode (Miễn phí) không thể bỏ qua với quy tắc tùy chỉnh Skip hành động. Bạn có thể tắt chế độ Bot Fight Mode hoặc nâng cấp lên chế độ Super Bot Fight Mode để kiểm soát nhiều hơn.
  • Super Bot Fight Mode (Pro và cao hơn) có thể được bỏ qua với các quy tắc tùy chỉnh bằng cách sử dụng Skip action, cho phép bạn linh hoạt hơn để tạo ngoại lệ.
  • Bot Fight Mode (Free) cannot be bypassed with custom rule Skip actions. You can turn off Bot Fight Mode or upgrade to Super Bot Fight Mode for more control.
  • Super Bot Fight Mode (Pro and above) can be bypassed with custom rules using the Skip action, giving you more flexibility to create exceptions.
  • Bot Fight Mode (ដោយឥតគិតថ្លៃ) មិនអាចត្រូវបានប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែ អ្នកអាចផ្លាស់ប្តូរកម្មវិធី Bot Fight Mode ឬធ្វើឱ្យប្រសើរឡើងទៅកម្មវិធី Super Bot Fight Mode សម្រាប់ការគ្រប់គ្រងបន្ថែមទៀត។
  • Super Bot Fight Mode (Pro និងខ្ពស់ជាងនេះ) អាចត្រូវបានប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែប្រែ
Để biết thêm thông tin về việc xử lý dương tính giả, hãy tham khảo False positives.
For more information on handling false positives, refer to False positives.
សម្រាប់ព័ត៌មានបន្ថែមអំពីការដោះស្រាយអត្ថប្រយោជន៍អស្ចារ្យ, សូមមើល False positives ។

Liên kết liên quan (docs Cloudflare) Related links (Cloudflare docs) តំណពាក់ព័ន្ធ (docs Cloudflare)

Điều chỉnh các quy tắc của bạn Adjust your rules ការផ្លាស់ប្តូរគោលដៅរបស់អ្នក

Phần «Adjust your rules» — đọc hướng dẫn bên dưới, dùng liên kết docs gốc để xem ảnh minh họa và tab cấu hình đầy đủ.

Read the "Adjust your rules" section below — open the official docs link for full screenshots and configuration tabs.

អានផ្នែក «ការផ្លាស់ប្តូរគោលដៅរបស់អ្នក» ខាងក្រោម — បើកតំណ docs ផ្លូវការសម្រាប់រូបភាព និង tab កំណត់។

Mở section docs gốc ↗ Open source section ↗ បើកផ្នែក docs ផ្លូវការ ↗
Sau khi xem xét Sự kiện bảo mật, hãy điều chỉnh các quy tắc của bạn dựa trên kết quả.
After reviewing Security Events, adjust your rules based on the results.
បន្ទាប់ពីពិនិត្យឡើងវិញសកម្មភាពសុវត្ថិភាពសកម្មភាពសកម្មភាពសកម្មភាពសកម្មភាពសកម្មភាពសកម្មភាពសកម្មភាពសកម្មភាពសកម្មភាពសកម្មភាពសកម្មភាពសកម្មភាពសកម្មភាពសកម្មភាពសកម្មភាពសកម្មភាពសកម្មភាពសកម្មភាពសកម្មភាពសកម្មភាពសកម្មភាពសកម្មភាពសកម្មភាពសកម្មភាពសកម្មភាពសកម្មភាពសកម្មភាពសកម្មភាពសកម្មភាពសកម្មភាពសកម្មភាពសកម្មភាពសកម្មភាពសកម្មភាពសកម្មភាពសកម្មភាព
Scenario 1: Your monitoring tools or services are being blocked.
Scenario 1: Your monitoring tools or services are being blocked.
Scenario 1: Your monitoring tools or services are being blocked.
Công cụ giám sát nội bộ, dịch vụ kiểm tra sức khỏe hoặc API đối tác xuất hiện trong các sự kiện bị chặn. Sửa chữa phụ thuộc vào tính năng nào đang chặn chúng:
Internal monitoring tools, health check services, or partner APIs appear in blocked events. The fix depends on which feature is blocking them:
ឧបករណ៍ការត្រួតពិនិត្យផ្ទាល់ខ្លួនសេវាកម្មការត្រួតពិនិត្យសុខភាពឬ API របស់អ្នកជំនាញអាចបង្ហាញនៅក្នុងព្រឹត្តិការណ៍ដែលត្រូវបានកាត់បន្ថយ។ ការដោះស្រាយនេះបើយោងតាមលក្ខណៈពិសេសដែលបានប្លុកវាគឺ:
  • Nếu Super Bot Fight Mode (Pro và trên) đang chặn lưu lượng truy cập, hãy tạo một quy tắc tùy chỉnh với Skip action phù hợp với công cụ IP địa chỉ hoặc người dùng đại lý:
  • If Super Bot Fight Mode (Pro and above) is blocking the traffic, create a custom rule with a Skip action matching the tool IP address or user agent:
  • ប្រសិនបើ Super Bot Fight Mode (Pro និងខ្ពស់ជាងនេះ) គឺជាការកាត់បន្ថយការដឹកជញ្ជូន, បានបង្កើតកំណត់ផ្ទាល់ខ្លួនជាមួយ Skip action ដែលសមស្របជាមួយឧបករណ៍ IP address ឬ user agent:
1. Go to the Security rules page. Go to Security rules 2. Select Create rule \> Custom rules. 3. Enter a descriptive name. 4. Under When incoming requests match, select Edit expression and enter: (ip.src eq 192.0.2.1) (replace with your tool's IP address). 5. Under Then take action, select Skip. Then select All Super Bot Fight Mode rules. 6. Select Deploy.
1. Go to the Security rules page. Go to Security rules 2. Select Create rule \> Custom rules. 3. Enter a descriptive name. 4. Under When incoming requests match, select Edit expression and enter: (ip.src eq 192.0.2.1) (replace with your tool's IP address). 5. Under Then take action, select Skip. Then select All Super Bot Fight Mode rules. 6. Select Deploy.
1 ។ សូមចូលទៅក្នុងទំព័រ Security rules ។ កុំព្យូទ័រ Go to Security rules 2 ចុច Create rule & Custom rules ។ 3 ។ ទាញយកឈ្មោះដែលមានលក្ខណៈពិសេស 4 ។ នៅក្រោម When incoming requests match, ជ្រើស Edit expression និងចុះបញ្ជី: (ip.src eq 192.0.2.1) (ការផ្លាស់ប្តូរដោយអាសយដ្ឋាន IP នៃឧបករណ៍របស់អ្នក) ។ 5 ។ នៅក្រោម Then take action សូមជ្រើស Skip ។ បន្ទាប់មកចុច All Super Bot Fight Mode rules ។ 6 ។ សូមជ្រើស Deploy ។
  • Nếu Bot Fight Mode (Miễn phí) đang chặn lưu lượng truy cập, hãy tắt Chế độ Chiến đấu Bot hoặc nâng cấp lên Super Bot Fight Mode để biết các quy tắc ngoại lệ chi tiết.
  • ប្រសិនបើ Bot Fight Mode (ដោយឥតគិតថ្លៃ) គឺជាការកាត់បន្ថយការដឹកជញ្ជូន, ទាញយកកម្មវិធី Bot Fight Mode ឬធ្វើឱ្យប្រសើរឡើងទៅ Super Bot Fight Mode សម្រាប់ច្បាប់ការបាត់បន្ថយពិសេស។
Để biết chi tiết về cấu hình Skip action, hãy tham khảo Configure a rule with the Skip action.
For details on Skip action configuration, refer to Configure a rule with the Skip action.
សម្រាប់ព័ត៌មានបន្ថែមអំពីការផ្លាស់ប្តូរ Skip action សូមមើល Configure a rule with the Skip action ។
Scenario 2: Malicious traffic is still getting through.
Scenario 2: Malicious traffic is still getting through.
Scenario 2: Malicious traffic is still getting through.
Hoạt động bot xuất hiện trong Sự kiện bảo mật mà các quy tắc hiện tại của bạn không nắm bắt. Các bot vẫn ở dưới giới hạn tỷ lệ hoặc tránh các quy tắc tín hiệu đơn yêu cầu kết hợp nhiều tín hiệu. Ví dụ, để thách thức các yêu cầu POST đến /login không đến từ các bot đã được xác minh:
Bot activity appears in Security Events that your current rules do not catch. Bots that stay under rate limits or evade single-signal rules require combining multiple signals. For example, to challenge POST requests to /login that are not from verified bots:
សកម្មភាព Bot បាន បង្ហាញ នៅ ក្នុង ការ សកម្មភាព សុវត្ថិភាព ដែល គោលដៅ ឥឡូវ នេះ របស់ អ្នក មិន អាច ស្គាល់ ។ កុំព្យូទ័រដែលមានកម្រិតខ្ពស់ជាងកម្រិតអតិថិជនឬការឆ្លើយតបពីច្បាប់សញ្ញាបនប័ត្រតែមួយត្រូវការរួមបញ្ចូលសញ្ញាបនប័ត្រជាច្រើន។ ឧទាហរណ៍, ដើម្បីជម្រើស POST ដើម្បី /login ដែលមិនមកពី bot ដែលបានត្រួតពិនិត្យ:
  1. Trong bảng điều khiển Cloudflare, đi đến Security \> Security rules.
  1. In the Cloudflare dashboard, go to Security \> Security rules.
  1. នៅលើប្រព័ន្ធប្រតិបត្តិការ Cloudflare សូមចូលទៅ Security \> Security rules ។
  1. Chọn Create rule \> Custom rules.
  2. Nhập tên mô tả
  3. Trong When incoming requests match, chọn Edit expression và nhập:
  1. Select Create rule \> Custom rules.
  2. Enter a descriptive name.
  3. Under When incoming requests match, select Edit expression and enter:
  1. សូមចុច Create rule > Custom rules ។
  2. ទាញយកឈ្មោះដែលមានលក្ខណៈពិសេស
  3. នៅក្រោម When incoming requests match សូមជ្រើស Edit expression ហើយចូលទៅក្នុង:
text
(http.request.uri.path eq "/login" and http.request.method eq "POST" and not cf.client.bot)
  1. Trong Then take action, chọn Challenge quản lý.
  2. Chọn Deploy
  3. Xem kết quả trong Sự kiện bảo mật. Nếu quy tắc chỉ phù hợp với lưu lượng bot, hãy thay đổi action thành Block.
  1. Under Then take action, select Managed Challenge.
  2. Select Deploy.
  3. Review the results in Security Events. If the rule matches only bot traffic, change the action to Block.
  1. នៅក្រោម Then take action, ជ្រើសរើស Managed Challenge ។
  2. សូមជ្រើស Deploy ។
  3. សូមពិនិត្យមើលផលិតផលនៅក្នុងកម្មវិធី Security Events ។ ប្រសិនបើគោលដៅនេះបានបំពេញតាមការធ្វើតេស្ត bot មួយតែប៉ុណ្ណោះ, សូមផ្លាស់ប្តូរ action ទៅ Block ។
  1. Đăng nhập vào Cloudflare dashboard ↗ và chọn tài khoản và tên miền của bạn.
  2. Đi đến Security \> WAF \> Custom rules.
  3. Chọn Create rule
  4. Nhập tên mô tả
  5. Trong When incoming requests match, chọn Edit expression và nhập:
  1. Log in to the Cloudflare dashboard ↗, and select your account and domain.
  2. Go to Security \> WAF \> Custom rules.
  3. Select Create rule.
  4. Enter a descriptive name.
  5. Under When incoming requests match, select Edit expression and enter:
  1. ចុច Cloudflare dashboard ↗ ហើយជ្រើសគណនីរបស់អ្នកនិងតំបន់បណ្ដាញរបស់អ្នក។
  2. ចុចទៅ Security \> WAF \> Custom rules ។
  3. សូមជ្រើស Create rule ។
  4. ទាញយកឈ្មោះដែលមានលក្ខណៈពិសេស
  5. នៅក្រោម When incoming requests match សូមជ្រើស Edit expression ហើយចូលទៅក្នុង:
text
(http.request.uri.path eq "/login" and http.request.method eq "POST" and not cf.client.bot)
  1. Trong Then take action, chọn Challenge quản lý.
  2. Chọn Deploy
  3. Xem kết quả trong Sự kiện bảo mật. Nếu quy tắc chỉ phù hợp với lưu lượng bot, hãy thay đổi action thành Block.
  1. Under Then take action, select Managed Challenge.
  2. Select Deploy.
  3. Review the results in Security Events. If the rule matches only bot traffic, change the action to Block.
  1. នៅក្រោម Then take action, ជ្រើសរើស Managed Challenge ។
  2. សូមជ្រើស Deploy ។
  3. សូមពិនិត្យមើលផលិតផលនៅក្នុងកម្មវិធី Security Events ។ ប្រសិនបើគោលដៅនេះបានបំពេញតាមការធ្វើតេស្ត bot មួយតែប៉ុណ្ណោះ, សូមផ្លាស់ប្តូរ action ទៅ Block ។
Để biết thêm trường biểu thức và ví dụ, hãy xem Custom rules use cases.
For more expression fields and examples, refer to Custom rules use cases.
សម្រាប់បច្ចុប្បន្នភាពបន្ថែមទៀតនិងឧទាហរណ៍ពិនិត្យមើល Custom rules use cases ។
Nếu các bot vẫn ở dưới ngưỡng rate limiting của bạn, hãy chỉnh sửa quy tắc rate limiting và giảm số lượng yêu cầu hoặc rút ngắn cửa sổ thời gian.
If bots are staying under your rate limiting thresholds, edit the rate limiting rule and reduce the request count or shorten the time window.
ប្រសិនបើប៊ូតុងមានកម្រិតខ្ពស់ជាងទំហំ rate limiting របស់អ្នក, ទាញយកកំណត់ rate limiting និងកាត់បន្ថយការកំណត់តម្រូវការឬកាត់បន្ថយពេលវេលា។
Quy tắc tùy chỉnh thực hiện trước khi Super Bot Fight Mode trong thứ tự đánh giá. Nếu một quy tắc tùy chỉnh có dấu chấm dứt action (Block, Managed Challenge), yêu cầu không đạt đến chế độ Super Bot Fight. Nhắc đến Security features interoperability
Custom rules execute before Super Bot Fight Mode in the evaluation order. If a custom rule takes a terminating action (Block, Managed Challenge), the request does not reach Super Bot Fight Mode. Refer to Security features interoperability.
លក្ខខណ្ឌលក្ខខណ្ឌលក្ខខណ្ឌលក្ខខណ្ឌលក្ខខណ្ឌលក្ខខណ្ឌលក្ខខណ្ឌលក្ខខណ្ឌលក្ខខណ្ឌលក្ខខណ្ឌលក្ខខណ្ឌលក្ខខណ្ឌលក្ខខណ្ឌ ប្រសិនបើគោលដៅផ្ទាល់ខ្លួនមានការបញ្ចប់ action (Block, Managed Challenge) ទម្រង់នេះមិនទទួលបាន Super Bot Fight Mode ។ សូមអរគុណ Security features interoperability
Doanh nghiệp Bot Management
Enterprise Bot Management
អាជីវកម្ម Bot Management
Khách hàng doanh nghiệp với Bot Management có thể điều chỉnh các quy tắc bằng cách sử dụng trường cf.bot_management.score để kiểm soát chi tiết hơn. Tham khảo Bot Management variables cho các trường có sẵn.
Enterprise customers with Bot Management can tune rules using the cf.bot_management.score field for more granular control. Refer to Bot Management variables for available fields.
អ្នកអតិថិជនអាជីវកម្មដែលមាន Bot Management អាចកំណត់ធម្មតាដោយប្រើឧបករណ៍ cf.bot_management.score សម្រាប់ការគ្រប់គ្រងបន្ថែមទៀត។ សូមពិនិត្យមើល Bot Management variables សម្រាប់ឧបករណ៍ដែលអាចប្រើបាន។

Xem bản đầy đủ trên developers.cloudflare.com (ảnh, tab cấu hình). View the full guide on developers.cloudflare.com (images, config tabs). មើលមគ្គុទ្ទេសក៍ពេញលើ developers.cloudflare.com (រូបភាព, tab កំណត់)។

Tài liệu gốc ↗ Official docs ↗ ឯកសារផ្លូវការ ↗