Forum Discussion
siru_129409
Nimbostratus
Jun 03, 2015Vulnerability - F5 BIG-IP COOKIE REMOTE INFORMATION DISCLOSURE
One of my client did a Penetration testing on their web application which is load balanced by the F5 LTM, the penetration tester found the following vulnerability on the F5
Can any one help me h...
amolari
Cirrostratus
Jun 03, 2015F5 LTM are sending session cookies in clear ( default behaviour )
modify the http profile for Virtual Server that use cookie persistence and use the encrypt cookie option
Ref: sol14784: Configuring BIG-IP cookie encryption (10.x - 11.x)
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects
