Forum Discussion
ASM policy doesn't block metacharacters in paramters name and value
I have ASM policy in blocking mode for a VS rules are as below:
- parameters allowed wildcard *, Value or Name Meta characters are now allowed only space and : allowed in value not parameter name
- under Application Security : Blocking : Settings Illegal meta character in parameter name and Illegal meta character in value both are blocking
- url allowed wildcard /page1*
when I test url parameters to check if the policy works correctly:
- /page1?a=
- rob_carr
Cirrocumulus
You've indicated that test requests with
- Amr_Esmat_24704
Nimbostratus
No violations triggered, I also changed settings under blocking to alarm or block but the request passes with no violation or block triggered
Version BIG-IP 11.6.3 Build 0.0.3 Final
- Ido_Breger_3805Historic F5 Account
Hi, Is staging enabled for that parameter?
- samstep
Cirrocumulus
Make sure Staging is switched off.
- rob_carr
Cirrocumulus
Violations against a parameter in staging will not trigger blocking behavior - also true for file types and URLs. Take the parameter out of staging, re-run the test and I would not be surprised if you see blocking behavior.
- Amr_Esmat_24704
Nimbostratus
yes taking parameter out of staging solved the problem
Thanks you
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com