Forum Discussion
Soltest_150427
Nimbostratus
Apr 09, 2014Is there a Heartbleed attack log signature?
Get the latest updates on how F5 mitigates Heartbleed I found ID 456033 but is that the actual attack signature msg ID the logs would actually show? If not is there one for it?
Mike_Maher
Nimbostratus
Apr 09, 2014I don't believe you can detect this with an Attack Signature, it is a flaw in the SSL stack and all that happens before you get to the ASM portion of the system. If you are running 11.5.0 (which is the only vulnerable version) right now the mitigation is to set your ciphers in your client ssl profiles to NATIVE. Then you won't use any of the ciphers that leverage openssl.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects