# \#access-security

**URL:** https://community.f5.com/tag/access-security/505.md

[Latest](https://community.f5.com/latest.md) · [Categories](https://community.f5.com/categories.md) · [Tags](https://community.f5.com/tags.md)

---

## [OWASP Tactical Access Defense Series: Broken Object Property Level Authorization and BIG-IP APM](https://community.f5.com/t/owasp-tactical-access-defense-series-broken-object-property-level-authorization-and-big-ip-apm/74268)

<div class="topic-metadata">

**Author:** [@momahdy](https://community.f5.com/u/momahdy)\
**Replies:** 0\
**Last updated:** [April 4, 2024, 5:32pm UTC](https://community.f5.com/t/owasp-tactical-access-defense-series-broken-object-property-level-authorization-and-big-ip-apm/74268 "2024-04-04T17:32:51Z")

</div>

AUTHOR NOTE: Unauthorized access to private/sensitive object properties may result in data disclosure, data loss, or data corruption. Under certain circumstances, unauthorized access to object properties can lead to priv…

---

## [What is "Host Processor Superuser" in /var/ssh/root/authorized\_keys?](https://community.f5.com/t/what-is-host-processor-superuser-in-var-ssh-root-authorized-keys/17512)

<div class="topic-metadata">

**Author:** [@Toefer\_133125](https://community.f5.com/u/Toefer_133125)\
**Replies:** 3\
**Last updated:** [February 10, 2022, 11:49am UTC](https://community.f5.com/t/what-is-host-processor-superuser-in-var-ssh-root-authorized-keys/17512 "2022-02-10T11:49:28Z")

</div>

I am currently using 11.3.0. When looking at the authorized\_keys file for root, I found an SSH key for Host Processor Superuser. What is this for and is it okay to remove it?

---

## [Is blocking all HTTP-HEAD requesta a bad idea?](https://community.f5.com/t/is-blocking-all-http-head-requesta-a-bad-idea/61286)

<div class="topic-metadata">

**Author:** [@schusb](https://community.f5.com/u/schusb)\
**Replies:** 4\
**Last updated:** [January 12, 2019, 1:49pm UTC](https://community.f5.com/t/is-blocking-all-http-head-requesta-a-bad-idea/61286 "2019-01-12T13:49:06Z")

</div>

We think about blocking all HTTP Head requests for our Web-Applications (not REST or SOAP) via ASM, by returning a html response page with HTTP-code 200 OK, because most of them are requests from crawlers. Are there e…

---

## [How to limit access by time?](https://community.f5.com/t/how-to-limit-access-by-time/6629)

<div class="topic-metadata">

**Author:** [@André\_Amaro\_215](https://community.f5.com/u/Andr%C3%A9_Amaro_215)\
**Replies:** 1\
**Last updated:** [January 11, 2019, 2:47pm UTC](https://community.f5.com/t/how-to-limit-access-by-time/6629 "2019-01-11T14:47:24Z")

</div>

Dear community, I need to handle requests for a particular domain in a different way. I usually apply a few simple conditions, for example, requests must arrive with the xpto.com header to be forwarded to the pool. I …

---

## [Inspect POST Request for Existence of Username Parameter](https://community.f5.com/t/inspect-post-request-for-existence-of-username-parameter/42004)

<div class="topic-metadata">

**Author:** [@ralgar1\_294065](https://community.f5.com/u/ralgar1_294065)\
**Replies:** 1\
**Last updated:** [September 6, 2017, 9:58am UTC](https://community.f5.com/t/inspect-post-request-for-existence-of-username-parameter/42004 "2017-09-06T09:58:09Z")

</div>

Is it possible to to check if a username has been provided in a POST request? Could this be done via HTTP::username command or would a HTTP::collect be needed to inspect the payload of the request? Would you be able to p…

---

## [Access allowed when it should be denied](https://community.f5.com/t/access-allowed-when-it-should-be-denied/8549)

<div class="topic-metadata">

**Author:** [@Luiz\_Guimaraes](https://community.f5.com/u/Luiz_Guimaraes)\
**Replies:** 2\
**Last updated:** [May 25, 2017, 5:24pm UTC](https://community.f5.com/t/access-allowed-when-it-should-be-denied/8549 "2017-05-25T17:24:31Z")

</div>

Hi guys I’m implementing APM in a customer environment and now we caught in a problem that the customer has an URL that I use APM to authenticate and then check the group, if the group is approved the access will be p…

---

## [ICSA Certified Network Firewall for Data Centers](https://community.f5.com/t/icsa-certified-network-firewall-for-data-centers/66045)

<div class="topic-metadata">

**Author:** [@PSilva](https://community.f5.com/u/PSilva)\
**Replies:** 1\
**Last updated:** [August 12, 2016, 4:18am UTC](https://community.f5.com/t/icsa-certified-network-firewall-for-data-centers/66045 "2016-08-12T04:18:14Z")

</div>

The BIG-IP platform is now ICSA Certified as a Network Firewall. Internet threats are widely varied and multi-layered. Although applications and their data are attackers’ primary targets, many attackers gain entry at th…

---

## [In 5 Minutes or Less Video - BIG-IP APM & Citrix XenApp](https://community.f5.com/t/in-5-minutes-or-less-video-big-ip-apm-citrix-xenapp/66384)

<div class="topic-metadata">

**Author:** [@PSilva](https://community.f5.com/u/PSilva)\
**Replies:** 2\
**Last updated:** [April 1, 2015, 6:32pm UTC](https://community.f5.com/t/in-5-minutes-or-less-video-big-ip-apm-citrix-xenapp/66384 "2015-04-01T18:32:05Z")

</div>

Watch how F5 customers can now simply use BIG-IP Access Policy Manager or BIG-IP Edge Gateway to consolidate access control in a central location, keeping infrastructure administration concerns to a minimum. With BIG-IP …

---

## [BYOD Policies &ndash; More than an IT Issue Part 1: Liability](https://community.f5.com/t/byod-policies-ndash-more-than-an-it-issue-part-1-liability/65522)

<div class="topic-metadata">

**Author:** [@PSilva](https://community.f5.com/u/PSilva)\
**Replies:** 0\
**Last updated:** [October 16, 2012, 1:05pm UTC](https://community.f5.com/t/byod-policies-ndash-more-than-an-it-issue-part-1-liability/65522 "2012-10-16T13:05:36Z")

</div>

byod or Bring Your Own Device has moved from trend to an permanent fixture in today’s corporate IT infrastructure. It is not strictly an IT issue however. Many groups within an organization need to be involved as they gr…

---

## [Will BYOL Cripple BYOD?](https://community.f5.com/t/will-byol-cripple-byod/66115)

<div class="topic-metadata">

**Author:** [@PSilva](https://community.f5.com/u/PSilva)\
**Replies:** 0\
**Last updated:** [June 28, 2012, 12:55pm UTC](https://community.f5.com/t/will-byol-cripple-byod/66115 "2012-06-28T12:55:46Z")

</div>

Don’t ya love all the acronyms we have? So by now, you’ve probably heard that BYOD means Bring Your Own Device – a topic that is getting lots of press these days. The concept of allowing employees to use their own pers…

---

## [BYOD&ndash;The Hottest Trend or Just the Hottest Term](https://community.f5.com/t/byod-ndash-the-hottest-trend-or-just-the-hottest-term/66069)

<div class="topic-metadata">

**Author:** [@PSilva](https://community.f5.com/u/PSilva)\
**Replies:** 0\
**Last updated:** [April 5, 2012, 12:20pm UTC](https://community.f5.com/t/byod-ndash-the-hottest-trend-or-just-the-hottest-term/66069 "2012-04-05T12:20:19Z")

</div>

It goes by many names: ‘Bring Your Own Danger’, ‘Bring Your Own Disaster’ and what most people call ‘Bring Your Own Device’ and everyone it seems is writing, talking and surveying about BYOD. What used to be inconceivab…

---

## [Ode to FirePass](https://community.f5.com/t/ode-to-firepass/65982)

<div class="topic-metadata">

**Author:** [@PSilva](https://community.f5.com/u/PSilva)\
**Replies:** 0\
**Last updated:** [February 20, 2012, 7:52pm UTC](https://community.f5.com/t/ode-to-firepass/65982 "2012-02-20T19:52:00Z")

</div>

A decade ago, remote VPN access was a relatively new concept for businesses; it was available only to a select few who truly needed it, and it was usually over a dial-up connection. Vendors like Cisco, Check Point, and M…

---

## [iDo Declare: iPhone with BIG-IP](https://community.f5.com/t/ido-declare-iphone-with-big-ip/66164)

<div class="topic-metadata">

**Author:** [@PSilva](https://community.f5.com/u/PSilva)\
**Replies:** 1\
**Last updated:** [February 15, 2012, 7:22pm UTC](https://community.f5.com/t/ido-declare-iphone-with-big-ip/66164 "2012-02-15T19:22:43Z")

</div>

Who would have imagined back in 1973 when Martin Cooper/Motorola dialed the first portable cellular phone call, that one day we’d be booking airline tickets, paying bills, taking pictures, watching movies, getting direct…

---

## [New iOS Edge Client](https://community.f5.com/t/new-ios-edge-client/65971)

<div class="topic-metadata">

**Author:** [@PSilva](https://community.f5.com/u/PSilva)\
**Replies:** 0\
**Last updated:** [February 15, 2012, 7:22pm UTC](https://community.f5.com/t/new-ios-edge-client/65971 "2012-02-15T19:22:42Z")

</div>

If you are running the BIG-IP Edge Client on your iPhone, iPod or iPad, you may have gotten an AppStore alert for an update. If not, I just wanted to let you know that version 1.0.3 of the iOS Edge Client is available a…

---

## [SANS 20 Critical Security Controls](https://community.f5.com/t/sans-20-critical-security-controls/65896)

<div class="topic-metadata">

**Author:** [@PSilva](https://community.f5.com/u/PSilva)\
**Replies:** 0\
**Last updated:** [August 23, 2011, 12:31pm UTC](https://community.f5.com/t/sans-20-critical-security-controls/65896 "2011-08-23T12:31:02Z")

</div>

A couple days ago, The SANS Institute announced the release of a major update (Version 3.0) to the 20 Critical Controls, a prioritized baseline of information security measures designed to provide continuous monitoring t…

---

## [Drive Identity Into Your Network with F5 Access Solutions](https://community.f5.com/t/drive-identity-into-your-network-with-f5-access-solutions/65838)

<div class="topic-metadata">

**Author:** [@PSilva](https://community.f5.com/u/PSilva)\
**Replies:** 0\
**Last updated:** [June 16, 2011, 4:25pm UTC](https://community.f5.com/t/drive-identity-into-your-network-with-f5-access-solutions/65838 "2011-06-16T16:25:55Z")

</div>

This webinar focuses on F5 Access solutions that provide high availability, acceleration and security benefits critical to your organization. Running time: 55:51 ps

---

## [Who In The World Are You?](https://community.f5.com/t/who-in-the-world-are-you/65925)

<div class="topic-metadata">

**Author:** [@PSilva](https://community.f5.com/u/PSilva)\
**Replies:** 0\
**Last updated:** [June 7, 2011, 11:54am UTC](https://community.f5.com/t/who-in-the-world-are-you/65925 "2011-06-07T11:54:27Z")

</div>

Steven Wright has said, ‘It’s a small world, but I wouldn’t want to paint it.’ The world is getting smaller with today’s 24/7 global marketplace. Businesses have offices and employees around the world to serve the needs …

---

## [Do You Splunk 2.0](https://community.f5.com/t/do-you-splunk-2-0/66251)

<div class="topic-metadata">

**Author:** [@PSilva](https://community.f5.com/u/PSilva)\
**Replies:** 2\
**Last updated:** [April 26, 2011, 9:18pm UTC](https://community.f5.com/t/do-you-splunk-2-0/66251 "2011-04-26T21:18:13Z")

</div>

A little over two years ago I blogged Do you Splunk? about the reporting integration with our FirePass SSL VPN and BIG-IP ASM. The Splunk reports have provided customers valuable insight into application access and user…

---

## [F5 Tutorial: BIG-IP APM with SecureAuth](https://community.f5.com/t/f5-tutorial-big-ip-apm-with-secureauth/66284)

<div class="topic-metadata">

**Author:** [@PSilva](https://community.f5.com/u/PSilva)\
**Replies:** 0\
**Last updated:** [October 25, 2010, 4:39pm UTC](https://community.f5.com/t/f5-tutorial-big-ip-apm-with-secureauth/66284 "2010-10-25T16:39:32Z")

</div>

This video demonstrates the flexibility of BIG-IP Access Policy Manager and integration with SecureAuth, which provides two-factor authentication using SSL certificates. F5’s Tony Torzillo shows how these integrate with …

---

## [The New Certificate 2048 My Performance](https://community.f5.com/t/the-new-certificate-2048-my-performance/66287)

<div class="topic-metadata">

**Author:** [@PSilva](https://community.f5.com/u/PSilva)\
**Replies:** 0\
**Last updated:** [October 19, 2010, 12:02pm UTC](https://community.f5.com/t/the-new-certificate-2048-my-performance/66287 "2010-10-19T12:02:37Z")

</div>

SSL is a cryptographic protocol used to secure communications over the internet. SSL ensures secure end-to-end transmission and is implemented in every Web browser. It can also be used to secure email, instant messagin…

---

## [CloudFucius Councils: Cloud&rsquo;s Love/Hate Relationship](https://community.f5.com/t/cloudfucius-councils-cloud-rsquo-s-love-hate-relationship/66194)

<div class="topic-metadata">

**Author:** [@PSilva](https://community.f5.com/u/PSilva)\
**Replies:** 1\
**Last updated:** [October 5, 2010, 11:51am UTC](https://community.f5.com/t/cloudfucius-councils-cloud-rsquo-s-love-hate-relationship/66194 "2010-10-05T11:51:28Z")

</div>

I’m afraid so….let’s get more! I don’t like it and….here’s a check. I’m not safe….but I need another. I’m so sick of you….give me a big hug. As I’ve mentioned on a few occasions, it seems like a new cloud computing…

---

## [F5 Access Policy Manager & Oracle Access Manager Integration - Part 1](https://community.f5.com/t/f5-access-policy-manager-oracle-access-manager-integration-part-1/66324)

<div class="topic-metadata">

**Author:** [@PSilva](https://community.f5.com/u/PSilva)\
**Replies:** 0\
**Last updated:** [October 1, 2010, 10:18pm UTC](https://community.f5.com/t/f5-access-policy-manager-oracle-access-manager-integration-part-1/66324 "2010-10-01T22:18:37Z")

</div>

A couple days ago, I posted the F5 BIG-IP Access Policy Manager and Oracle Access Manager Integration demo video created by Chris Akker and narrated by Chris Manley – who does a great job, by the way. That was actually …

---

## [CloudFucius&rsquo; Money: Trickles to the Cloud](https://community.f5.com/t/cloudfucius-rsquo-money-trickles-to-the-cloud/66277)

<div class="topic-metadata">

**Author:** [@PSilva](https://community.f5.com/u/PSilva)\
**Replies:** 1\
**Last updated:** [August 23, 2010, 8:08pm UTC](https://community.f5.com/t/cloudfucius-rsquo-money-trickles-to-the-cloud/66277 "2010-08-23T20:08:16Z")

</div>

No, I’m not investing some seed money in a cool new company or technology but banks are certainly looking to take advantage of cloud computing services. At least that’s the message from a recent survey by Bank Systems…

---

## [CloudFucius Corners: The Coin Operated Cloud](https://community.f5.com/t/cloudfucius-corners-the-coin-operated-cloud/66199)

<div class="topic-metadata">

**Author:** [@PSilva](https://community.f5.com/u/PSilva)\
**Replies:** 0\
**Last updated:** [August 11, 2010, 7:26pm UTC](https://community.f5.com/t/cloudfucius-corners-the-coin-operated-cloud/66199 "2010-08-11T19:26:10Z")

</div>

A couple weeks ago I made mention of The Coin Operated Cloud in passing and decided to expand on it. Isn’t that how blogs are supposed to work? It’s no secret that The Cloud has given many organizations and individua…

---

## [The Encryption Dance - LIVE](https://community.f5.com/t/the-encryption-dance-live/66188)

<div class="topic-metadata">

**Author:** [@PSilva](https://community.f5.com/u/PSilva)\
**Replies:** 0\
**Last updated:** [August 5, 2010, 10:43pm UTC](https://community.f5.com/t/the-encryption-dance-live/66188 "2010-08-05T22:43:35Z")

</div>

I get the chance to perform my ‘The Encryption Dance’ Live A Capella during the Security and Control Session at the F5 Summit.

---

## [F5 Summit: Interview with Andy Oehler](https://community.f5.com/t/f5-summit-interview-with-andy-oehler/66225)

<div class="topic-metadata">

**Author:** [@PSilva](https://community.f5.com/u/PSilva)\
**Replies:** 0\
**Last updated:** [August 5, 2010, 7:08pm UTC](https://community.f5.com/t/f5-summit-interview-with-andy-oehler/66225 "2010-08-05T19:08:44Z")

</div>

I sit down with with Andy Oehler, Product Manager for F5’s Secure Access Solutions, to chat about BIG-IP Edge Gateway and BIG-IP Access Policy Manager. From the F5 Summit in Chicago.

---

## [CloudFucius Dials Up the Cloud](https://community.f5.com/t/cloudfucius-dials-up-the-cloud/66378)

<div class="topic-metadata">

**Author:** [@PSilva](https://community.f5.com/u/PSilva)\
**Replies:** 0\
**Last updated:** [July 7, 2010, 9:46pm UTC](https://community.f5.com/t/cloudfucius-dials-up-the-cloud/66378 "2010-07-07T21:46:18Z")

</div>

According to IDC, the worldwide mobile worker population is set to increase from 919.4 million in 2008, accounting for 29% of the worldwide workforce, to 1.19 billion in 2013, accounting for 34.9% of the workforce. Th…

---

## [Connecting to a Cloud while Flying thru the Clouds](https://community.f5.com/t/connecting-to-a-cloud-while-flying-thru-the-clouds/66154)

<div class="topic-metadata">

**Author:** [@PSilva](https://community.f5.com/u/PSilva)\
**Replies:** 1\
**Last updated:** [June 14, 2010, 9:11pm UTC](https://community.f5.com/t/connecting-to-a-cloud-while-flying-thru-the-clouds/66154 "2010-06-14T21:11:32Z")

</div>

CloudFucius checked out some In-flight WiFi this week while traveling to Seattle. Alaska Air offers GoGo Inflight Internet on their 737 fleet flying the 48 contiguous for $4.95, but the service is free through July 20…

---

## [CloudFucius Combines: Security and Acceleration](https://community.f5.com/t/cloudfucius-combines-security-and-acceleration/67245)

<div class="topic-metadata">

**Author:** [@PSilva](https://community.f5.com/u/PSilva)\
**Replies:** 0\
**Last updated:** [May 25, 2010, 4:43pm UTC](https://community.f5.com/t/cloudfucius-combines-security-and-acceleration/67245 "2010-05-25T16:43:25Z")

</div>

CloudFucius has explored Cloud Security with AAA Important to the Cloud and Hosts in the Cloud along with wanting An Optimized Cloud. Now he desires the sweet spot of Cloud Application Delivery combining Security and …

---

## [CloudFucius Inspects: Hosts in the Cloud](https://community.f5.com/t/cloudfucius-inspects-hosts-in-the-cloud/67237)

<div class="topic-metadata">

**Author:** [@PSilva](https://community.f5.com/u/PSilva)\
**Replies:** 0\
**Last updated:** [May 19, 2010, 12:23am UTC](https://community.f5.com/t/cloudfucius-inspects-hosts-in-the-cloud/67237 "2010-05-19T00:23:05Z")

</div>

So much has been written about all the systems, infrastructure, applications, content and everything else IT related that’s making it’s way to the cloud yet I haven’t seen much discussion (or maybe I just missed it) ab…

[Next page](https://community.f5.com/tag/access-security/505.md?match_all_tags=true&page=1&tags%5B%5D=access-security)
