Forum Discussion
How to block an attack on basis of x-ms-forwarded-client-ip
Hi,
In fact you can create an ddos profile and specifiy how to detect attackers and which mitigation to use: - By Source IP (but in this case the profil don't use an specific header but real ip source) - By Device ID:
You can try preventing ddos usig device ID, just be carefull because this feature will block requests from clients that do not support JavaScript, even if the security policy is in Transparent mode.
So before trying to set an irule a advise you to use device ID (The device ID is a unique identifier that ASM creates by sending JavaScript to get information about the client device.)
For that Go to ASM then ddos --> Application Security ›› TPS-based DoS Detection
How to detect attackers and which mitigation to use: By Device ID
let me know if it's enough for you ifnot i can help you if an irule is need.
regards
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com