Forum Discussion
ramann_75062
Nimbostratus
May 05, 2009Check only for Attack Signature
Hi@all,
I try to build a base configuration that only checks for Attack Signature.
To do this, i created a new HTTP class and in this, I select customer configuration and deselected all checks (Headers, Cookies,..) expect "Application Security" and "URI Paths" because I made a filter for /cgi-bin/*
After saving, I and open this class again, the "custermer" flag is no more selected, but the rest (deselected all checks expect "Application Security" and "URI Paths") is OK
When i now look into the reports, I looks like that all requests to /cgi-bin/ are completely checked, like:
Illegal empty parameter value Yes No No
Illegal meta character in parameter value Yes No No
Modified domain cookie(s) Yes No No
What do I wrong?
Cheers
Bjoern
PS: BIG-IP 9.4.6 Build 401.0 Final
- Benjamin_9036Historic F5 AccountHey Bjoern,
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects