Forum Discussion
GauravL
Jun 06, 2024Nimbostratus
SECADV045: PA HTTP Smuggling vulnerability
Can you confirm if the following product 'F5 Rules for AWS WAF' has been updated to provide protection against SECADV045: PA HTTP Smuggling vulnerability? Tag- F5 Rules for AWS WAF
Pradeep_Kandi
Jul 03, 2024Employee
Hi GauravL
AWS WAF Rules doesn't provide protection against CVE-2024-23316. Since it's an HTTP Request Smuggling vulnerability, AWS Load Balancer needs to be set up to guard against it. I hope this link will be useful https://kloudle.com/academy/configuring-aws-load-balancers-to-protect-against-http-desync-attacks/
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects