Queries for the SentinelImpervaWAFCloudV2Logs table

For information on using these queries in the Azure portal, see Log Analytics tutorial. For the REST API, see Query.

Imperva WAF Cloud V2 Logs

Query for Imperva Cloud WAF security events

SentinelImpervaWAFCloudV2Logs
| where Act == "REQ_BLOCKED"
| summarize count() by AttackName, CCode, Src
| sort by count_ desc