Forum Discussion
Brute force detection- JSON Parameters
It appears that there two options. Ideally, upgrade to 12.x and use the JSON brute force mitigation. On 11.x, you would have to either build a custom iRule to handle this. A quick search on devcentral shows:
https://devcentral.f5.com/codeshare/protecting-login-pages-against-brute-force-attack-v1
You could use this as starting point. If you are unable to customize this please check https://f5.com/support/professional-services/consulting-services/irules-ondemand
Alternatively, you could try to detect the brute force login attempts using DOS by limiting the number of Requests from a given source ip.
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com