Forum Discussion
is changing the value of ecard_max_http_req_uri_len has any risk?
hello everyone,
the value of ecard_max_http_req_uri_len in our ASM is set to the default of 2048, and one of the applications we have got blocked for exceeding the length, so we increase it to 2096 and after some time they got blocked too so we increase it again to 2144, now they are getting blocked again, so I want to increase it more but i'm wondering if it has any security issue, I tried looking for answer but no clear answer, the closest I got was it may consume more resorces from ASM,
so I need to know if I can increase it without having any issue in security or performance.
Thanks.
Follow this recommendation: https://my.f5.com/manage/s/article/K53257013
Or even better: Ask the developers how long the requests uri's could be and set the variable accordingly.
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com