Forum Discussion
MSZ
Nimbostratus
Feb 24, 2016Signature ID is required
Can anyone identify the signature ID's on WAF for the following cases?
Cross-Site Scripting:
ReflectedCross-Site Scripting vulnerabilities were verified as executing code on the web application...
Erik_Novak
Employee
Feb 24, 2016These look like scan results from Trustwave. Can you import the XML file from the scan into an ASM policy? The vulnerabilities that ASM can mitigate will then be listed. Otherwise, go to Application Security: Attack Signatures, and then filter the Policy Attack Signatures list by "Signature name contains" and enter "XSS", etc. You should get a large list of signature names and their IDs. The two examples at the bottom of your list are not associated with any attack signatures, however.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects