Forum Discussion
imac_105647
Nimbostratus
Jan 06, 2010XML comment triggers an attack signature
Hello,
Can anyone tell me why a comment in an XML POST is seen as an attack?
The only thing I've found so far is the use of comments to help generating the correct checksum on signed content.
Here is a sample of the troublesome XML, take out the comment and the problem goes away:
1972-05-01
Employed
M
false
This triggers the attack signature:
Comments (2) 200016001
- hoolio
Cirrostratus
Hi,
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects