Forum Discussion
ptate_72056
Nimbostratus
Jan 23, 2009Persistence cookies and security
Hi Everyone,
We've recently had a security audit reveal that the BigIP persistence cookie contains the IP address and the port of the node the user connected to.
I can see why this is required from a BigIP point of view but is there any way of securing this information, bar not using cookie-based persistence.
Many thanks in advance,
Phill
- James_Quinby_46Historic F5 AccountWhat version of LTM code are you running? You may be able to encrypt cookies. See:
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects