BIG-IP AWAF Demo 09 - Use File Type Enforcement with F5 BIG-IP Adv WAF (formerly ASM)

Sdílet
Vložit
  • čas přidán 9. 09. 2024
  • The purpose of this demo is to show how to use file type enforcement in a BIG-IP Advanced WAF security policy.
    In this demo we will:
    1. Show forceful browsing attacks against a vulnerable web application.
    2. Show an existing BIG-IP Advanced WAF security policy without file type enforcement.
    3. Enable file type learning and generate requests using the web application.
    4. Show how the allowed file type list changes based on requests from trusted IP addresses.
    5. Ensure the file type list is stabilized, then disable new learning, and then test the security policy for file type enforcement.

Komentáře • 1