Forum Discussion
ASM policy for non http traffic
Hi,
We have created a non http (tcp) virtual server. This virtual server would listen on 888/tcp on the internet. We want to apply security policy to this virtual server (ASM policy). is it possible?
Regards
7 Replies
- Hannes_Rapp
Nimbostratus
If it's not a HTTP or Websocket application, you can't use ASM.
What can you do with websocket in ASM? check files/URLs/parameters/etc?
- Hannes_Rapp
Nimbostratus
@2funky - Great question. As this feature was just introduced in BigIP ASM 12.1, the documentation part is not as good yet. Hopefully it will improve soon. Regardless, there's an article which gives you an idea of the features offered by ASM for WS traffic inspection. Have a look at the article here (scroll down to 1) : https://devcentral.f5.com/articles/the-top-ten-hardcore-f5-security-features-in-big-ip-121-19959
- Hannes_Rapp_162
Nacreous
If it's not a HTTP or Websocket application, you can't use ASM.
What can you do with websocket in ASM? check files/URLs/parameters/etc?
- Hannes_Rapp_162
Nacreous
@2funky - Great question. As this feature was just introduced in BigIP ASM 12.1, the documentation part is not as good yet. Hopefully it will improve soon. Regardless, there's an article which gives you an idea of the features offered by ASM for WS traffic inspection. Have a look at the article here (scroll down to 1) : https://devcentral.f5.com/articles/the-top-ten-hardcore-f5-security-features-in-big-ip-121-19959
- jgranieri
Nimbostratus
ASM only works on HTTP protocol so you wont be able to apply an ASM policy unless there is a HTTP profile.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com