Forum Discussion
networksecurity2022
Nimbostratus
4 years agoi rule
please help me to create Irule below requirement. If <sourec ip1 >or <source ip2> IPs are the sourceAddress and Host header is either <x.x.x.x>or <Y.Y.Y.Y> then you have to allow the communication. ...
networksecurity2022
Nimbostratus
4 years agoAbove rule not working, request must allow. only reject Other than source ips, rest of the IPs will be blocked if they are having IP in the host header.
- Dario_Garrido4 years ago
Noctilucent
Hello.
Check this one.
Rejects everything to those IPs (<x.x.x.x> or <y.y.y.y>) in the host header, except if the source is one of those IPs (<source ip1> or <source ip2>)
when HTTP_REQUEST { if { ([HTTP::host] eq "<x.x.x.x>") || ([HTTP::host] eq "<y.y.y.y>") } { if { !(([IP::client_addr] eq "<sourec ip1>") || ([IP::client_addr] eq "<sourec ip2>")) } { reject } } }
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects