DevCentral Connects: Log4j CVE-2021-44228
Buu and John held court today in a special Monday episode of DevCentral Connects with F5 security experts MegaZone, David Warburton, and Joe Martin to discuss the log4j vulnerability.
Resources
- AskF5 Solution on the Vulnerability (K19026212)
- F5 Labs: Explaining the Widespread log4j vulnerability
- Beyond patching and mitigations, maybe some architecture changes? (LinkedIn Thread)
- Talking to Leadership (Slide Deck from InfoSec Innovations)
Published Dec 13, 2021
Version 1.0JRahm
Admin
Christ Follower, Husband, Father, Technologist. I love community and I especially love THIS community. My background is networking, but I've dabbled in all the F5 iStuff, I'm a recovering Perl guy, and am very much a python enthusiast. Learning alongside all of you in this accelerating industry toward modern apps and architectures.JRahm
Admin
Christ Follower, Husband, Father, Technologist. I love community and I especially love THIS community. My background is networking, but I've dabbled in all the F5 iStuff, I'm a recovering Perl guy, and am very much a python enthusiast. Learning alongside all of you in this accelerating industry toward modern apps and architectures.1 Comment
- PeteWhite
Employee
I have created an iApp to allow you to deploy and manage the iRule. Check it out at https://devcentral.f5.com/s/articles/Apache-Log4j2-CVE-2021-44228-mitigation-iApp