Forum Discussion
Can I use F5 Big-IP WAF as HoneyPot
Do you have any links where I can learn about VS fronting a dummy app and a transparent ASM policy?
Also, may I know why you are not suggesting not to host a honeypot in the production BIG-IP?
I don’t have a specific link describing this exact use case, but you can refer to this F5 lab: https://f5-agility-labs-waf.readthedocs.io/en/latest/index.html#
It walks you through setting up a basic transparent WAF policy.
As for the backend app, you could use something lightweight and isolated, like a Docker container running Hackazon or OWASP Juice Shop.
Alternatively, you could have the F5 itself respond with a simple 200 OK to all requests.
Just keep in mind, exposing such a setup to the internet will likely attract a lot of unwanted traffic. Unless you have excess resources you don’t mind consuming, I wouldn’t recommend using your production F5 for this purpose.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com