Forum Discussion
mwitt_65218
Nimbostratus
Aug 28, 2009truncation/request length exceeds defined buffer size
Greetings,
I was wondering if anybody might have any thoughts about something.
The policy for a web app is in blocking mode, but the BLOCK box for Request Length Exceeds ...
hoolio
Cirrostratus
Aug 28, 2009Hi,
As far as I'm aware, ASM should never modify the request payload. I believe the truncated flag just indicates that ASM did not log the full request as it was larger than some configured limit. If you put the policy in blocking mode and the request triggers a violation with blocking enabled, ASM would take the blocking action.
I think the default max request size is set to 10Mib per the long_request_buffer_size internal parameter (set under 'Application Security | Options | Advanced Configuration'. You could extend this max size or disable the check entirely by modifying the blocking mask and disabling blocking on the Request Length Exceeds Defined Buffer Size check.
Aaron
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects