Mar 27, 2026 - For details about updated CVE-2025-53521 (BIG-IP APM vulnerability), refer to K000156741.

Forum Discussion

Alex_3320's avatar
Alex_3320
Icon for Nimbostratus rankNimbostratus
15 years ago

ASM violations and attack signatures.

Hello

 

Is there a tool to trigger F5 ASM violations and attack signatures.

 

5 Replies

  • hoolio's avatar
    hoolio
    Icon for Cirrostratus rankCirrostratus
    Hi Alex,

     

     

    The answer(s) depend largely on what your goal is. Are you trying to test the policy itself or the alerting for violations?

     

     

    Aaron
  • hoolio's avatar
    hoolio
    Icon for Cirrostratus rankCirrostratus
    You can use the logger command to generate arbitrary syslog messages:

     

     

    SOL7165: Testing SNMP traps and email alerts

     

    http://support.f5.com/kb/en-us/solutions/public/7000/100/sol7165.html

     

     

    Else, if you want to more thoroughly test, you might need to configure a test policy with all checks enabled, set up some policy definitions and send test HTTP requests which trigger the violations.

     

     

    Aaron
  • Hello and thanks for the reply

     

    the question now how do i send test HTTP requests which trigger the violations?

     

     

     

  • you can use NMAP to scan the F5 Virtual server ,then the asm will generate violations if the virtuals server is configure with application security profile.