For more information regarding the security incident at F5, the actions we are taking to address it, and our ongoing efforts to protect our customers, click here.

Forum Discussion

2 Replies

  • Hello,

    Is the limit rule, to not reach some paths?

    Have you tried this with a LTM policy or some rule?

    Instead of block/reset, another possibility is to redirect from the forbidden path to a landing page.

     

    Regards.

  • Yes it is possible to limit which URLs are reachable without having ASM/AWAF licensed & provisioned. You could create a datagroup with valid URI path values and then using an iRule or Local Traffic Policy block or redirect any request that didn't match one of the whitelisted URIs.