Forum Discussion
I_R_101_110
Cirrus
Jul 07, 2018HTTP Security Profiles and ASM Overlap
Good afternoon all,
I'm just wondering about how http security profiles fit into the BIG-IP offering as a whole in relation to the ASM security profile. The entire http_security profile is an overlap of the capabilities of ASM but it is attachable at the vs lvl.
My initial though is that it fulfills two requirements:
- To protect non-ASM deployments with standard http compliance if you have AFM licensed.
- To offer a defense in depth tiered architecture in which AFM/LTM is scrubbing traffic before being forwarded to an LTM/ASM box.
- Defense in depth.
Am I missing something here or am I accurate in my assumptions?
that is pretty much my feeling also. it started from somewhere probably and found its place in AFM. nice for a start, but if you need an actual WAF you need ASM.
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects