Forum Discussion
Check1t_282465
Nimbostratus
Dec 13, 2017ASM Policy Allow traversal detection evasion only for specific URL
Our application is flagging legitimate requests for directory traversals. Learning option is to allow for application. Is it possible to allow for just one URL? For example, if I were to create a ...
Ashwin_Venkat
Employee
Jan 12, 2018Hello,
Unfortunately, that's not possible in 12.x. We can only unblock requests based on signature IDs starting in v13 using the ASM::signature iRule command: https://devcentral.f5.com/wiki/iRules.ASM__signature.ashx. Otherwise, the only way to unblock these requests is based on the 'Attack signature detected' violation itself and not by virtue of any particular signature.
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects
