Forum Discussion
block a specific user
Hi everyone,
Is it possible to create a signature to block a specific user from authenticating to a web portal?
thanks
Antonio
4 Replies
- Antonio3
Altocumulus
Thanks for your reply.
I created a new signature as shown in the attached image.
This happens: it blocks all authentication requests containing the word admin, for example:
user:admin
password:admin
user:administrator
password:pippo
user:pippo
password:admin
user:adminarial
password:pippo
I'd like it to block only when the "admin" username is entered.
Thanks
- waseem-alomari
Nimbostratus
I guess that you need to change the ( Matched Criteria ) from contains string to something more accurate from the available options , or to match on regular expressions which will give only " admin "
See my article
F5 ASM/AWAF Preventing unauthorized users accessing admin path using iRule script | DevCentral as Jmtaylor mentioned in 17.x you can match on username based on login page extracted data.
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com