Forum Discussion
User gets blocking page instead of captcha for brute force attack
Hi,
1. This behavior is caused for a bug.
2. some URLs fails and another no, you need to test all the brute force login that configuring to figure out if is affected or not.
3. You need to specify the URL path, not the domain.
4. Additional if you need to add more than one path, you must determine if there are URL added, because run the command replaces the current value.
* First run the command :
tmsh list /sys db asm.cs.qualified_urls
*Then modify the db parameter with all the URLs that you need to exclude, in the next example I add /login and /index.php:
tmsh modify /sys db asm.cs.qualified_urls value /loginpage.mvc,/login,/index.php
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com