02-May-2023 01:15 - edited 02-May-2023 01:18
hi everyone
My customers have difficulties where their application is subject to a pentest where in the HTTP Request and Response it displays the HTTP method as shown below, is there any hidden rules that can be used to hide or remove HTTP Methods such as OPTIONS, POST and others marked below This
Thank You
Thank You
02-May-2023 01:48
here is an article on OPTIONS method. You can use the HTTP profile to reject or irules:
https://my.f5.com/manage/s/article/K34769490
you can do the same for other methods.