Forum Discussion
AndréB
Jul 29, 2021Nimbostratus
ASM / WAF : block request containing certain string?
I have added as much XSS blocking to a policy as possible. A request containing onmouseover or onclick or .... ="alert('hello')" is blocked fine.
But when it's coded like onmouseover or onclick or .... ="self['\x....... the ASM accepts this as valid.
Can I block a request with this parameter value?
How do I achieve this?
- aglinkaNimbostratus
Please give example of Your blocking rule You are currently implementing.
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects