Forum Discussion
What is the significance of staging with allowed file types?
- Jan 19, 2024
Hi Wasfi_Bounni,
configuring file types is more than just adding a file extension like .php to an allow list, file types also have attributes like URL Length, Request Length, Query String Length or POST Data Length. Also Response Signatures, attack signatures that are designed to inspect responses, can be applied to file types.
The verify that all these attributes and signatures are configured correctly and to avoid false positives, you can (should) perform staging on file types.Makes sense?
KR
Daniel
Hi Wasfi_Bounni,
configuring file types is more than just adding a file extension like .php to an allow list, file types also have attributes like URL Length, Request Length, Query String Length or POST Data Length. Also Response Signatures, attack signatures that are designed to inspect responses, can be applied to file types.
The verify that all these attributes and signatures are configured correctly and to avoid false positives, you can (should) perform staging on file types.
Makes sense?
KR
Daniel
Thank you Daniel.
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com