09-Dec-2020 12:57
I'm new to F5 and we recently implemented WAF in one-arm mode. I'm getting quite a few complaints from web developers about some of their HTTP requests getting blocked. I was thinking if it's a better idea to add RFC 1918 addresses to the IP address exception list and select "never block this IP"?
Can someone please advise if it's a good solution?
Thanks.
Solved! Go to Solution.
09-Dec-2020 23:32
Hello,
if you consider IP address as being safe, you can set a address exception and categorized Wed Developpers IP Adresses as Trusted IP.
Regards
09-Dec-2020 23:32
Hello,
if you consider IP address as being safe, you can set a address exception and categorized Wed Developpers IP Adresses as Trusted IP.
Regards
11-Dec-2020
06:46
- last edited on
24-Mar-2022
01:26
by
li-migration
Thanks for responding. I made the exception to just "never block the IP' but didn't add the IP as trusted IP. I was told that adding the IP as trusted will cause Big-IP to build policy signatures based on their traffic. I surely didn't want to do that.
14-Dec-2020 04:34
OK Sharath413,
If this answer was helpful, please don't forget to mark the answer as "Select as Best" in order to pass your post as resolved and help other people to find it.