Forum Discussion
Ambiguous logs in /var/log/asm
Hello Community,
I noticed the below logs appearing in /var/log/asm frequently I am curious to know what could be the reason behind them.
I just want to confirm that I dont have any "Automatic Policy" cofigured.
=================================================
info perl[x]: 01310053:6: ASMConfig change: [update] { audit: component = Policy Builder }
info perl[x]: 01310053:6: ASMConfig change: [add]: IncidentType was set to Access from Malicious or Disallowed source.
================================================
2 Replies
Hi Sarah ,
> I think you enable Automatic Learning with one of your policies so you find this Log much , I recommed to review your policies again maybe there is at least one policy has this option enabled by mistake.
> If you find any of your policies enables Automatic Learninng , this is maybe a reason for this Log.
> To know About "the Shape of Automatic policy builder " :
Navigate this Article :https://techdocs.f5.com/kb/en-us/products/big-ip_asm/manuals/product/asm-implementations-11-5-0/36.html
Hope this helps youWas that indeed the case Sarah
If so please flag the question as answered.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
