Forum Discussion
Wasfi_182818
Altostratus
Feb 20, 2016Pacifying parameter input
Hi;
If I wanted to pacify a script input in a paramter like
1 Reply
- samstep
Cirrocumulus
You can't do this in ASM, ASM is a Web Application Firewall. It can DETECT , ALARM and BLOCK the the malicious parameter input like < script >, but it will not sanitize it. You will need to write an LTM iRule for content modification/sanitization, however beware that potentially you will be allowing malicious input anyway. Stripping HTML tags is not enough to stop the attack. The correct way of fixing this is to fix your application, so speak to your developers first.
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects