Forum Discussion
Check1t_282465
Nimbostratus
Dec 13, 2017ASM Policy Allow traversal detection evasion only for specific URL
Our application is flagging legitimate requests for directory traversals. Learning option is to allow for application. Is it possible to allow for just one URL? For example, if I were to create a ...
Check1t_282465
Nimbostratus
Jan 18, 2018Sorry, hopefully last question. Could I use either via LTM iRule or Policy a method of disabling ASM when a specific URI (/example.jpg) is invoked? I tried irules using asm::enable/disable and HTTP_CLASS_SELECTED / HTTP::path commands as well as HTTP_REQUEST / HTTP::uri commands, but both failed.
PS - does the ACCESS::enable/disable command only work with APM and not ASM?
Thanks again.
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects
