Forum Discussion
Adrien_Legros_1
Altostratus
Oct 16, 2008Encrypt-Decrypt all the cookies on the fly
Our applications use a lot of cookies so I wanted to secure it via an Irule inspired by these i can find in this forum but nothing is working. When I use my Irule or another one, my website doesn't wo...
Adrien_Legros_1
Altostratus
Oct 16, 2008Hello, first thanks for your interest with my problem.
Here is an extract of the LTM log. It seems to work with the cookie cook1 and sometimes there is nothing in it...
And I don't think the client should modify the cookie. If he should, I understand that I could not encrypt-decrypt it on the F5.
Thu Oct 16 14:57:18 CEST 2008 tmm tmm[944] Rule secure_cookie_test HTTP_REQUEST: Cookie cook1 : Received value is GmTM4JrlKFPgC6p1af3uqAiAYbAFIk3l4X3Ff4/rQm7SUmTL7dzZ7rldPauDpZCk1STylq0gaPrVIKFOSlJImklEusM2eIVxZpJGxkGTD7KrCG7qjSlbRBLGZD/WY=:
Thu Oct 16 14:57:18 CEST 2008 tmm tmm[944] Rule secure_cookie_test HTTP_REQUEST: Cookie cook1 : Decrypted value send to backend is 1e1bcc1010b6de32734c584317443b31.00.025c64fa80e0da7e279af9b0bd9212ca:
Thu Oct 16 14:57:18 CEST 2008 tmm tmm[944] Rule secure_cookie_test HTTP_REQUEST: Cookie cook1_wat_2Enbb2Ebe_2F : Received value is QVNQLk5FVF9TZXNzaW9uSWQ_?4b284dd5eaf9f32ef409c86291a232d1:
Thu Oct 16 14:57:18 CEST 2008 tmm tmm[944] Rule secure_cookie_test HTTP_REQUEST: Cookie cook1_wat_2Enbb2Ebe_2F : Decrypted value send to backend is :
Thu Oct 16 14:57:18 CEST 2008 tmm tmm[944] Rule secure_cookie_test HTTP_REQUEST: Cookie ns_cookietest : Received value is true:
Thu Oct 16 14:57:18 CEST 2008 tmm tmm[944] 01220001 TCL error: Rule secure_cookie_test HTTP_REQUEST - Out of bounds line 1 invoked from within HTTP::cookie decrypt $mycookies $::cookie_passphrase foreach body line 3 invoked from within foreach mycookies $myValues { log local0. Cookie $mycookies : Received value is [HTTP::cookie value $mycookies]: set decrypted_value [HTTP::co...
Thu Oct 16 14:57:33 CEST 2008 tmm tmm[944] Rule secure_cookie_test HTTP_REQUEST: Cookie nbbrpid : Received value is GmTM4JrlKFPgC6p1af3uqAiAYbAFIk3l4X3Ff4/rQm7SUmTL7dzZ7rldPauDpZCk1STylq0gaPrVIKFOSlJImklEusM2eIVxZpJGxkGTD7KrCG7qjSlbRBLGZD/WY=:
Thu Oct 16 14:57:33 CEST 2008 tmm tmm[944] Rule secure_cookie_test HTTP_REQUEST: Cookie nbbrpid : Decrypted value send to backend is 1e1bcc1010b6de32734c584317443b31.00.025c64fa80e0da7e279af9b0bd9212ca:
Thu Oct 16 14:57:33 CEST 2008 tmm tmm[944] Rule secure_cookie_test HTTP_REQUEST: Cookie nbbrpid_wat_2Enbb2Ebe_2F : Received value is QVNQLk5FVF9TZXNzaW9uSWQ_?4b284dd5eaf9f32ef409c86291a232d1:
Thu Oct 16 14:57:33 CEST 2008 tmm tmm[944] Rule secure_cookie_test HTTP_REQUEST: Cookie nbbrpid_wat_2Enbb2Ebe_2F : Decrypted value send to backend is :
Thu Oct 16 14:57:33 CEST 2008 tmm tmm[944] Rule secure_cookie_test HTTP_REQUEST: Cookie ns_cookietest : Received value is true:
Thu Oct 16 14:57:33 CEST 2008 tmm tmm[944] 01220001 TCL error: Rule secure_cookie_test HTTP_REQUEST - Out of bounds line 2 invoked from within HTTP::cookie decrypt $mycookies $::cookie_passphrase foreach body line 3 invoked from within foreach mycookies $myValues { log local0. Cookie $mycookies : Received value is [HTTP::cookie value $mycookies]: set decrypted_value [HTTP::co...
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects