Manual Chapter :
Customizing Automatic Transaction default settings
Applies To:
Show VersionsBIG-IP FPS
- 17.1.2, 17.1.1, 17.1.0, 17.0.0, 16.1.5, 16.1.4, 16.1.3, 16.1.2, 16.1.1, 16.1.0, 16.0.1, 16.0.0, 15.1.9, 15.1.8, 15.1.7, 15.1.6, 15.1.5, 15.1.4, 15.1.3, 15.1.2, 15.1.0
Customizing Automatic Transaction default settings
Customize the Automatic Transaction default settings if you want to change one or more of the automatic transaction alert scores or modify settings that determine if a transaction is bot-originated.
- On the Main tab, click.The Anti-Fraud Profiles screen opens.
- From the list of profiles, select the relevant profile.The Anti-Fraud Profile Properties screen opens.
- In the Anti-Fraud Configuration area, clickURL List.The URL List opens.
- Click the URL or view on which you want to customize Automatic Transactions default settings (or clickAdd URLorAdd Viewif you want to define a new URL or view with Automatic Transactions detection).The URL Properties (or View Properties) screen opens.
- In the URL Configuration (or View Configuration) area, selectAutomatic Transactions.The Automatic Transactions configuration options appear.
- Ensure that theEnabledcheck box forAutomatic Transactionsis selected.
- ClickAdvanced.The Automatic Transactions advanced settings are listed.
- ForBot Score, type a number to add to the total risk score of the anti-fraud profile if the system determines that the client is a bot and not human.
- ForSuspected Bot Score, type a number to add to the total risk score of the anti-fraud profile if the system suspects (but has not verified) that the client is a bot and not human.
- ForMinimum Mouse Movements, type the minimum number of mouse movements needed (per page load) for the system to consider the transaction to be of human origin.
- ForButton User Interactions, type the minimum number of times the mouse should be placed on theSubmitbutton on a web form for the system to consider the transaction to be of human origin.If the mouse moves over theSubmitbutton and then moves away, the count returns to 0.
- ForScore(forMinimum Mouse MovementsandButton User Interactions), type a number to add to the total risk score if mouse movements or button user interactions are determined to be bot-originated.
- ForPage Read Time (sec), type the minimum number of seconds needed from when a web form opens to when theSubmitbutton is clicked. The default is 2 seconds.
- ForScore(forPage Read Time), type a number to add to the total risk score of the anti-fraud profile if the time between when a web form opens and theSubmitbutton is clicked is less than the number of seconds assigned forPage Read Time.
- ForTampered Cookie Score, type a number to add to the total risk score of the anti-fraud profile if the system detects that the Transactions Data cookie was removed.
- ForData Manipulation Score, type a number to add to the total risk score of the anti-fraud profile if the system detects data manipulation in one of the following situations:
- If the HTTP request sent or received by the URL is URL-encoded and one or more parameters have theCheck Data Manipulationattribute, the BIG-IP system checks for a difference between the actual value of a parameter and the expected value of a parameter sent when a user clicks a web form’s Submit button. If a difference is detected the score entered here is added to the total risk score of the anti-fraud profile, for each parameter marked withCheck Data Manipulation.
- If the HTTP request is not URL-encoded andCheck AJAX Payload for Data Manipulationis enabled, the BIG-IP system checks for a difference between the actual value of the Ajax payload sent by the client's browser and the expected value of the Ajax payload. If a difference is detected, the score entered here is added to the total risk score of the anti-fraud profile.
- ForData Manipulation Maximum Score, type a number to limit the total combined score that can be added to an alert score when the BIG-IP system detects that data manipulation occurred on two or more parameters.For example, if you setData Manipulation Scoreto 20 and the value here is 50, if the system detects data manipulation on 3 parameters a value of 50 is added to the alert score instead of 60 (which is the actual combined value).Data Manipulation Maximum Scoreis only relevant if the HTTP parameters are in query string or form format and two or more URL parameters have theCheck Data Manipulationattribute.
- ForMinimum Score to Send Alert, type a number for the minimum total score required to send an alert to the FPS Dashboard.
- ClickSave.The changes you made to the Automatic Transactions settings are saved.