Forum Discussion

Alex_3320's avatar
Alex_3320
Icon for Nimbostratus rankNimbostratus
Oct 14, 2010

ASM violations and attack signatures.

Hello

 

Is there a tool to trigger F5 ASM violations and attack signatures.

 

5 Replies

  • Hi Alex,

     

     

    The answer(s) depend largely on what your goal is. Are you trying to test the policy itself or the alerting for violations?

     

     

    Aaron
  • You can use the logger command to generate arbitrary syslog messages:

     

     

    SOL7165: Testing SNMP traps and email alerts

     

    http://support.f5.com/kb/en-us/solutions/public/7000/100/sol7165.html

     

     

    Else, if you want to more thoroughly test, you might need to configure a test policy with all checks enabled, set up some policy definitions and send test HTTP requests which trigger the violations.

     

     

    Aaron
  • Hello and thanks for the reply

     

    the question now how do i send test HTTP requests which trigger the violations?

     

     

     

  • you can use NMAP to scan the F5 Virtual server ,then the asm will generate violations if the virtuals server is configure with application security profile.