Forum Discussion
viewing full request on ASM Reporting
Hi,
Is there a way to get the full request on ASM Reporting?
SOL12044 says default behavior is ASM truncates the request on ASM Reporting.
https://support.f5.com/kb/en-us/solutions/public/12000/000/sol12044.html
Reason I asked is I am seeing traffic that matches Cross Site Scripting signature but it is not showing the violation details (eg. matching string, etc).
Thanks in advance for the assistance.
3 Replies
- Dan_Markhasin_1
Nimbostratus
You need to configure a logging profile in ASM to log the response as well as the request, and then assign that profile to the Virtual Server (via Security -> Policies).
- nolipineda
Altostratus
Thanks Dan but I am after the full request and not HTTP response. I do have an ASM logging profile that sends the log to Splunk but even that remote log is showing as truncated. - Dan_Markhasin_1
Nimbostratus
Sorry, I misread your question. Have you tried using an iRule to capture the request and see if it also gets truncated there?
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
