Forum Discussion
WAF Block Request
Hello Everyone
I hope Youre well!!!
Recently, I had this event logged by the WAF: a request categorized as “Attack signature detected” with a Violation Rating of 4. However, the WAF did NOT block it and is treating it as “Legal.” However, the linked policy is in blocking mode.
Does anyone know what this is due to and how to fix it?
Thank you in advance.
2 Replies
Looks like the signature you referenced is still in staging mode. Consider reviewing the documentation around attack signature enforcement options here:
K34235512: Overview of Attack Signature enforcement options (15.1.0 and later) https://my.f5.com/manage/s/article/K34235512
Hello ,
its pointing to for eg:- staging enabled, signature set to “Learn-Alarm”, trusted IP, exception, enforcement readiness period, policy building settings, etc.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com