Forum Discussion
Whitelist IP address for specific ASM signature
Considering the current exceptions capability in ASM, you're looking for a "workaround 'ish" solution. There's no built-in feature set for this level of granularity. Your equally good long-term scalable solutions are
- a secondary "Relaxed Policy" matched for a specific Source IP address in LTM,
- or an "Unblock iRule". In case of more exceptions - preferably built on top of a LTM data-group.
How likely you consider a scenario of having similar exceptions for other Source IP addresses? If you're rather positive, you're definitely better off with the "Unblock iRule" solution. If you need a reference, look around the codeshare. If you're still stuck, feel free to ask a fellow comrade write the whole thing for you.
Regards,
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com