Forum Discussion
Mathew_58740
Nimbostratus
Nov 06, 2013Irule for blocking specific traffic
HI Can we get some help to achieve the below
If the below condition matches we need to block the connection and rest all should be permited.
IP is from the following subnets
( src net...
Bhanu_9561
Cirrus
Nov 06, 2013You can also do it this way if you are only concerned about teh IP address. If you also need to look at the HTTP headers, you would require a more elaborate which coule be processor intensive as mentioned in the previous comment. iRuleIP_Addr_Block_List is a Data Group List which will contain the IP addresses/Networks that need to be blocked
when CLIENT_ACCEPTED{
if { [class match [IP::client_addr] equals $::IP_Addr_Block_List ] } {
TCP::close
} else {
return
}
}
Mathew_58740
Nimbostratus
Nov 06, 2013Thank you guys for the updates
our requirement is if IPAddress and the headers matches we have to block ,remaining traffic should be allowed.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects