Forum Discussion
Nik_67256
Nimbostratus
Mar 05, 2012CSRF Protection Query
Hello,
Have a query on CSRF protection. In ASM in Policies -->CSRF Protection screen , the user needs to specify the specific URLs of the webapp to protect. I ran a appscan scan on my webapp...
Nik_67256
Nimbostratus
Mar 28, 2012
Hello Aaron,
I have asm 10.2.2 running. I did try the wildcard expression, but dont think it works
I added https://siteURL/* in the CSRF protection page. I then did a explore with a scanner which conducted the CSRF
tests. However the asm traffic learning screen did not flag it as an event.
Queries
1) Firstly, Will this approach (described above) work in asm version 11
2) How can CSRF protection be achieved in asm version 10.2.2
regards
Nik
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects