Forum Discussion
Preet_pk
Cirrus
Mar 17, 2022ASM Policy
Hi, We have multiple web applications running on a single Virtual server with host/domain based pool routing. For eg: red.lab.ae blue.labe.ae irule: when HTTP_REQUEST { switch [string tolower ...
CA_Valli
MVP
Mar 17, 2022Hello, you can use ASM::policy syntax to attach a different policy.
- This requires that you have at least a minimal ASM Policy attached to the Virtual Server for the ASM commands to become available.
- If you don't use ASM::enable or ASM::disable syntax, default policy applied to VS will be applied to traffic
when HTTP_REQUEST {
switch [string tolower [HTTP::host]] {
red.lab.ae {
pool Red_Pool1
ASM::enable <policy1>
}
green.lab.ae {
pool Green_Pool1
ASM::enable <policy2>
}
}
}
Regarding your question about using different policies, it very much depends on the portals you're protecting.
I would recommend doing so if the application are very different, as a single "do it all" policy will loosen up the protection because you'll need to enable a lot of things required to make one portal work that might expose threats on the other one, and vice versa.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects
