After receiving API Security Enforcer (ASE) access logs and API JSON configuration files, ABS applies AI algorithms to track API connections and detect attacks. If the enable_abs_attack parameter is set to true, ABS sends the deny list to ASE which blocks client identifiers, such as API keys, usernames, cookie, IP address, and OAuth token on the list.

Diagram of data flow between ASE and ABS when detecting an attack