Posted By mrbongoco on 04/23/2012 10:36 PM
Hi
Firstly thank you for taking the time and interest in my post and also replying.
I certainly look at both suggestions today and realised that maybe I wasnt that clear.
I essentially want to stop clients (client side) seeing any info about the F5 itself but specifically the server type in the http header.
When a client connects to the vip without the fully qualified URL they see the f5 landing page thus exposing the F5 to any wouldbe attacker.
Hope this makes more sense.
Jon
I have only ever seen the F5 insert the Big-IP server header into a http response to the client when I call HTTP::redirect or HTTP::respond.
With HTTP::redirect the server header is hardwired and the only way to by-pass this is to use HTTP::respond to send out the a 302 response code with a location header.
HTTP::respond 302 noserver Location "http://www.domain.org" Server "testing"
If your using the F5 to server up the initial landing page, you could do this.
HTTP::respond noserver Server "testing" content $content