Alerts reflecting a DoS condition continue to be sent to the Attack Log for the duration of the attack. In the Attack Log, the result status displays DoS Blocking Activated for the attack condition.
To apply DoS Blocking Activated filter to the Results column, do the following:
Navigate to Analysis → <Admin Domain Name> → Attack Log.
Click on drop-down icon in the Results column, and select Filters → DoS Blocking Activated.