Forum Discussion
Need to implement HTTP security headers and Brute Force attack prevention features
Answer to question 1:
That irule tests OK, so I'm not sure what the issue is - the PR_CONNECT_RESET_ERROR indicates that the connection was reset which could indicate an irule syntax error - check your LTM log file.
Answer to question 2:
Has your URL been Qualified?
URLS are qualified for captcha or javascript insertion by being accessed correctly 10 times in five minutes, or by manually qualifying the URL
tmsh modify sys db asm.cs_qualified_urls value <login URL>
For the URL to be qualified for JS challenge, ASM should have seen 10 requests for the URL in the PAST and the response should have had "Content-Type: text/html" and a html tag in the body.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com