Forum Discussion
viewing full request on ASM Reporting
Hi,
Is there a way to get the full request on ASM Reporting?
SOL12044 says default behavior is ASM truncates the request on ASM Reporting.
https://support.f5.com/kb/en-us/solutions/public/12000/000/sol12044.html
Reason I asked is I am seeing traffic that matches Cross Site Scripting signature but it is not showing the violation details (eg. matching string, etc).
Thanks in advance for the assistance.
- Dan_Markhasin_1Nimbostratus
You need to configure a logging profile in ASM to log the response as well as the request, and then assign that profile to the Virtual Server (via Security -> Policies).
- Dan_Markhasin_1NimbostratusSorry, I misread your question. Have you tried using an iRule to capture the request and see if it also gets truncated there?
- nolipinedaAltostratusThanks Dan but I am after the full request and not HTTP response. I do have an ASM logging profile that sends the log to Splunk but even that remote log is showing as truncated.
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com