Forum Discussion
zeropixel_23561
Nimbostratus
Dec 21, 2015troubleshooting techniques on ASM security policies (PLEASE ADVISE)
I configured the virtual server and pool for the application to go through F5 LTM. I tweaked the protocol profile and http profile, and I am able to browse the application and working fine.
How...
zeropixel_23561
Nimbostratus
Dec 22, 2015I wonder if there are any header and limitations on ASM side? I saw whole bunch of http and protocol profiles on LTM side.
- natheDec 22, 2015
Cirrocumulus
Perhaps httpfox or fiddler will help see what headers are in use with and without ASM enabled. By default ASM removes the Server header back to the client, for information disclosure reasons. It can be added back and there is an askf5 solution on it - zeropixel_23561Dec 22, 2015
Nimbostratus
It is new to me that ASM remove the server header. How can I disable this setting? I think that can be the reason.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects