25-Aug-2021 01:06
I am pretty new to F5 devices, specifically F5 WAF. I came to know about the Devcentral community few months back but never checked it. Now today I have registered here and so hoping for better learning from F5 standpoint.
I had small query. We have F5 WAF and it is in blocking mode. I am just handling operations part of it. The policy is configured by someone else. Now whenever someone report issue we check the logs on WAF and if it is seeing blocked of WAF. We verify the request and accepts it once we find it legitimate.
So I know once I accept it, it starts working. I am curious to know the changes that happens behind this action. Please explain
Solved! Go to Solution.
25-Aug-2021
01:15
- last edited on
24-Mar-2022
01:20
by
li-migration
Hi
Welcome to Devcentral. You can find detailed information about AWAF previously ASM on Youtube. As for your question, I am assuming you are referring to traffic learning. Based on this, when you applied a suggestion F5 basically changed the attributes of that particular setting or entity. The changes can be verified under application security sub-menu or learning and blocking settings.
25-Aug-2021
01:15
- last edited on
24-Mar-2022
01:20
by
li-migration
Hi
Welcome to Devcentral. You can find detailed information about AWAF previously ASM on Youtube. As for your question, I am assuming you are referring to traffic learning. Based on this, when you applied a suggestion F5 basically changed the attributes of that particular setting or entity. The changes can be verified under application security sub-menu or learning and blocking settings.
25-Aug-2021 01:46
Thank you buddy for the explanation. Appreciate it
31-Aug-2021 00:02
Yesterday I came to know about this option of selecting best response which fulfilled my query. Thank you
25-Aug-2021
01:26
- last edited on
24-Mar-2022
01:20
by
li-migration
Hi
Welcome to F5 DevCentral ! You'll learn lot of things here related to F5 for sure.
25-Aug-2021 01:47
Thank you buddy for the warm welcome.