F5 Sites
  • F5.com
  • F5 Labs
  • MyF5
  • NGINX
  • Partner Central
  • Education Services Portal (ESP)
Contact
  • Under Attack?
  • F5 Support
  • DevCentral Support
  • F5 Sales
  • NGINX Sales
  • F5 Professional Services
Skip to contentBrand Logo
Forums
CrowdSRC
Articles
GroupsEventsSuggestionsHow Do I...?
RegisterSign In
  1. DevCentral
  2. Articles
  3. Technical Articles

Security Irules 101: Engage Cloak!

Introduction iRules are a powerful tool in the F5 administrators arsenal. They allow administrators to adapt and customize the F5 to their needs. They provide extensive power for securi...
Published Nov 15, 2014
Version 1.0
adn
application delivery
dev
devops
iRules
irules101
news
security
tech tip
jwham20's avatar
jwham20
Icon for Nimbostratus rankNimbostratus
Joined November 08, 2011
View Profile
jwham20's avatar
jwham20
Icon for Nimbostratus rankNimbostratus
Nov 26, 2012
There is also the HTTP::header sanitize command, which provides a built in method for the sanitization of headers.

 

 

https://devcentral.f5.com/wiki/irules.HTTP__header.ashx

 

 

These are all great examples of Positive Enforcement (whitelist models).

 

 

We could reverse this and create a general blanket Negative Security model, saying that no matter the application, we never want to see the server header leave our environment.

 

 

Help guide the future of your DevCentral Community!

What tools do you use to collaborate? (1min - anonymous)

ABOUT DEVCENTRAL

DevCentral NewsTechnical ForumTechnical ArticlesTechnical CrowdSRCCommunity GuidelinesDevCentral EULAGet a Developer Lab LicenseBecome a DevCentral MVP

RESOURCES

Product DocumentationWhite PapersGlossaryCustomer StoriesWebinarsFree Online CoursesTraining & Certification

SUPPORT

Manage SubscriptionsProfessional ServicesCreate a Service RequestSoftware DownloadsSupport Portal

PARTNERS

Find a Reseller PartnerTechnology AlliancesBecome an F5 PartnerLogin to Partner Central

©2026 F5, Inc. All rights reserved.
TrademarksPoliciesPrivacyCalifornia PrivacyDo Not Sell My Personal Information