CrowdSRC
type="CommunityContrib" src="Crowd"
cancel
Showing results for 
Search instead for 
Did you mean: 

Articles

Spring4shell iApp

Code is community submitted, community supported, and recognized as ‘Use At Your Own Risk’. Short Description iApp to simplify deployment of spring4shell  Problem solved by this Code Snippet My friend and colleague Ismael wrote a useful iRule to miti...

PeteWhite_0-1651762585719.png GettyImages-1173218079.jpg

iRule to serve security.txt file - RFC 9116

One week ago, on 27. April 2022, the IETF has published RFC 9116 describing the security.txt file. The purpose of this file is to aid in responsible disclosure, a process that allows security researchers to safely report vulnerabilities. The file sh...

Demystifying Time-based OTP

This article is written as an extensive explanation of how a Time-based OTP algorithm works and some guidelines on how to implement this in your F5. What is a TOTP? TOTP (aka Time-based OTP) is a way to use a code that is changing every 30 seconds in...

aron-visuals-BXOXnQ26B7o-unsplash.jpg

iRule to assist with CVE-2022-22965 mitigation

Hi there, On March 30, 2022, a remote code execution (RCE) vulnerability was found in the Java Spring Framework, identified by the CVE 2022-22965. I am sharing an example iRule to assist with mitigation of this CVE. This may require further customiz...

Step-by-step guide to build a F5 AWAF lab on Google Cloud

This is a small step by step guide on how to build a F5 AWAF (Advanced Web Application Firewall) lab environment on GCP (Google Cloud Platform). The purpose of this guide is to provide an easy way for quickly spin up a lab environment which can be us...

Home Lab Server Build Using an Intel NUC and Free VMware ESXi 7

If you're like me, despite having cheap or even free access to cloud compute, you still want to have a bit of compute in a home lab. I can create and destroy to my hearts content. Things can get weird and messy - and it's nobodys problem but my own. ...

IMG_1338.jpg C0072.MP4.21_33_57_09.Still001.png C0072.MP4.21_33_57_09.Still001.png
buulam by Community Manager
  • 2807 Views
  • 4 comments
  • 4 kudos

Another Bash script to backup a BIG-IP device.

The backup script is executed from the BIG-IP device and the UCS file created is copied to a remote SCP server. After the file has been copied, it is deleted locally. All the backup steps are logged to the local syslog. https://github.com/pedrorourem...

iRules Editor with Visual Studio Code

The windows iRule Editor has had a very long life. But...it hasn't been updated in years and really should be sunsetted in your environment. There have been other attempts along the way, from a personal project with a Mac desktop app written in pyth...

JRahm by Community Manager
  • 2225 Views
  • 0 comments
  • 4 kudos

SNI Routing with DNS Lookup

SNI (Server Name Indication) is an extension of the TLS protocol that is used by the client to indicate the hostname it is attempting to connect to at the start of the SSL handshake.  In the case of the BIG-IP the SNI can be used to select which cli...

bluecoat.png

Block Log4j with use of IOCs

Problem this snippet solves:iRule that helps to mitigate the Log4j vulnerability with use of public available IOCs. Currently the following IOCs can be used:cert-agid.gov.it (Contains scan IP's): https://cert-agid.gov.it/download/log4shell-iocs.txtNL...

Apache Log4j2 (CVE-2021-44228) mitigation iApp

Problem this snippet solves: There is a CVE released related to Apache log4j, which could be a vulnerability on a server located behind the BIG-IP. F5 SIRT have helpfully created an iRule to mitigate this vulnerability, this is an iApp to simplify cr...

rtaImage (7).png

Persist using a string in an HTTP URI

Problem this snippet solves:Sample Request:https://x.x.x.x/abcdefgh-ijkl-mnop-qrst-0123456789#value=%22I%20am%20the%20one%22&name=%22Mike%22&p=%220f2fd14389da8d85fbd215c789f7f7d5%22Requirement:Extract Account ID from request URI such as ‘abcdefgh-ijk...

Create a VPC VoltMesh AWS site (two interfaces node)

Problem this snippet solves:How to create a VoltMesh node inside an existing VPC. The VoltMesh node will be a two interfaces node and so could be used as both an ingress or egress gateway for the VPC.How to use this snippet:Pre-Requirements:Get and c...

Create an HTTPS Origin based on public IP for VoltMesh

Problem this snippet solves:How to create an HTTPS Origin that could be used in a VoltMesh HTTP or HTTPS Load-Balancer.This Origin is based on a public IP.How to use this snippet:Pre-requirements:Have a Volterra API Certificate. Please see this page ...

Create an HTTPS Origin based on public FQDN for VoltMesh

Problem this snippet solves:How to create an HTTPS Origin that could be used in a VoltMesh HTTP or HTTPS Load-Balancer.This Origin is based on a public FQDN name.How to use this snippet:Pre-requirements:Have a Volterra API Certificate. Please see thi...

Create an HTTPS Origin based on private IP for VoltMesh

Problem this snippet solves:How to create an HTTPS Origin that could be used in a VoltMesh HTTP or HTTPS Load-Balancer.This Origin is based on a private IP that can be reached with a Volterra node deployed on the same site as the ressource.How to use...

Labels
Top Contributors