Mar 27, 2026 - For details about updated CVE-2025-53521 (BIG-IP APM vulnerability), refer to K000156741.

Forum Discussion

mrunali09_33564's avatar
mrunali09_33564
Icon for Nimbostratus rankNimbostratus
Nov 06, 2017

How to monitor ASM logs

I have changed the enforcement mode to Blocking in ASM, what's the next step? How do we monitor the traffic. I see the blocked traffic under event logs but if I have to rollback any of my enforced action to disable how can I do this. How do I monitor legitimate traffic.

 

2 Replies

  • If ASM blocking is a false positive, you should be able to accept learnt entries and apply policy again.

     

  • You can use the "Log All Requests" Log Profile on your virtual (under the Security tab).