Sign in
On the server itself? Use the install's token
The dashboard token is admin_token in this install's vigilance.toml, or in the file its admin_token_file names. It works only from the server itself, for example through an SSH tunnel, and never through a web address. It stays in this tab only.
Set your password
At least 8 characters, with an upper case letter, a lower case letter, a number, and one other character. This device is remembered for your account, so signing in here again needs only the password.
Approve this device
This account has not signed in on this device before, so the device has to be approved first.
A 6-character code has been sent to this account's email address. It works for 15 minutes.
Or open the dashboard on a device where this account is already signed in: it is asked there, at the top of the page, whether to approve this one. This page carries on by itself once it has.
Score — what needed no look, of the last 24 hours' requests
Right now
Your account
The hour is yours, as this browser tells time, and is kept without a timezone: when your clocks change it arrives an hour off until you save this again. A quiet day's summary is still sent.
People — who signs in to this dashboard
Sites
Every site this instance reads. A site follows the switch at the top unless it is given a setting of its own here.
Findings — each row is one kind of match. Exclude what is legitimately yours.
Recent requests
Exclusions
Rules
Shipped rules, and the state you want each in. block counts toward blocking, detect records the match but never counts, off skips it. Changes survive rule updates.
The rules this site is judged by. block counts toward blocking, detect records the match but never counts, off skips it. Whoever runs this server sets them.
Since the last summary
Email reports
When an attack is blocked, a report is sent from this server through your own mail provider, on your own account. Nothing about your visitors is sent to us. Your provider lists these settings under SMTP.