Forum Discussion
AWS WAF Marketplace product exception rules Migration from WAF classic to WAF v2
Hi, Team.
The following settings were made in WAF classic.
[WAF classic settings]
In Web ACL, specify AWS WAF - Web Exploits Rules by F5 rule group with Action "no override".
Specify two rules in Rule Group exceptions and override count as exceptions.
(The following rules within the rule group will be overridden to count)
*1 The rules to specify are the two rule IDs in awswaf-290622.zip on the following website:
https://community.f5.com/kb/technicalarticles/f5-rules-for-aws-waf---rule-id-to-attack-type-reference/278088
Note: There have been customer inquiries about being blocked by this rule, and the rule was identified and excluded.
[WAF v2 settings]
Specify the successor rule, F5 Rule for AWS WAF - Web exploits OWASP Rules.
I think I can specify the Count for rules such as rule_General_Protection_AllQueryArguments_Body from the GUI, but I want to exclude the same rule that I specified in Classic*1. The granularity of the rules is different, so it seems I can't set it in the GUI.
■Question
(1) Can you tell me if the same thing can be done with WAF v2? In other words, make the rule in *1 count instead of block.
It doesn't seem like it can be done in the GUI, so is it possible to achieve it by importing json, etc.
(2) Will the rules used as exceptions in WAF classic (see below*1) also work in WAF v2?
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com