Brand LogoSkip to content
Forums
CrowdSRC
Articles
Groups
EventsSuggestions
RegisterSign In
  1. DevCentral
  2. Forums
  3. Technical Forum

Forum Discussion

Nikoolayy1's avatar
Nikoolayy1
Icon for MVP rankMVP
Aug 02, 2022

Can the F5 Advanced WAF protect the JWT token in an HTTP authorization header?

Hello,

 

Can the F5 Advanced WAF protect the JWT token in an HTTP authorization header?

 

My idea is that the F5 can monitor a cookie or parameter from tampering but what about if the a JWT token is used and the client changes the HTTP header with another value that is not a web attack but another stolen JWT token.

advanced waf
application delivery
asm
security

Recent Discussions

  • Installing a PKCS 12 File onto an F5 Device
    Oct 17, 2024
    chelusco
  • Irule to allow specific IPs
    Oct 17, 2024
    Vshah
  • Uploading SKCS 12 File to F5 Device
    Oct 17, 2024
    chelusco
  • F5 not Identifying Parameter in Text/Plain Upload
    Oct 17, 2024
    Gumshoe
  • Migration from physical Hardware to R series
    Oct 17, 2024
    RahulG
Related Content
  • JWT authorization with NGINX Ingress Controller
    Jul 14, 2023
    MichaelOLeary
  • Explore how F5 BIG-IP Advanced WAF protects against attacks on GraphQL API
    Dec 22, 2023
    iwiener
  • From ASM to Advanced WAF: Advancing your Application Security
    Apr 28, 2021
    Kyle_McKay
  • SSL Orchestrator Advanced Use Cases: Integrating F5 Advanced Firewall Manager (AFM)
    Sep 27, 2022
    Kevin_Stewart
  • OWASP Tactical Access Defense Series: Broken Function Level Authorization (BFLA)
    Aug 27, 2024
    momahdy