Forum Discussion
Mike_Maher
Sep 07, 2017Nimbostratus
Custom Attack Signature to block request with No UA or Referer
I want to be able to check and see if the request is missing both the User-Agent String and the Referer, and possibly block the request. So I know I can do this with an iRule, but I am wanting to tr...
Richard_Karon
Sep 21, 2017Employee
Another way to say this is that you want the header to be mandatory. There is a setting under
Security ›› Application Security : Headers : HTTP Headers ›› Edit Header
Mandatory to Enabled will say the header must appear in the request
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects